Switching White Papers

Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 Packets

Overview Cisco routers and switches running Cisco IOS software and configured to process Internet Protocol version 4 (IPv4) packets are vulnerable to a Denial of Service (DoS) attack. Multiple IPv4 packets with specific protocol fields sent directly to the device may cause the input interface to stop processing traffic once the input queue is full. Traffic passing through the device cannot block the input queue. No authentication is required to process the inbound packet. Processing of IPv4 packets is enabled by default. Devices running only IP version 6 (IPv6) are not affected. Multiple valid workarounds are available in the form of best practices for situations where software upgrades are not currently feasible.

Further White Paper Details
PublisherCisco Systems File FormatPDF, requires Acrobat Rdr 5
Date PublishedJuly 2004 Downloads75
FormatWhite Papers   
Topics

Quick Sitemap Links: