LLDP Fuzzer Released
If you pay close attention to the pen-test mailing list you’re probably aware of the LLDP fuzzer that was released a few days ago. The fuzzer is accompanied by a very nice white paper explaining the protocol and the individual test cases.
I looked around for different SCADA devices that support LLDP and only ran across a few by Hirschmann. It appears they integrated LLDP to make the initial configuration easier and it is tightly coupled with OPC… oh and ActiveX for graphics.
Hirschmann Automation and Control GmbH, Neckartenzlingen, is pleased to announce a new version of its “Industrial HiVision” network management software - Operator Edition 3.0. With this latest release, information such as the device status, link status or network load can be integrated directly into SCADA systems via an OPC Data Access 2.0 server. No specialist SNMP knowledge is required. The overall status of the network or sub-networks can even be displayed with just a single OPC variable. To simplify the integration further, a graphical representation of the network topology can be embedded into SCADA systems via an ActiveX control, included in the scope of delivery.
The new software, which is available for both the Windows 2000/XP and Linux operating systems, also supports automatic detection of network topology via LLDP (Link Layer Discovery Protocol). This feature considerably reduces the initial configuration work. As a result, network components and end devices such as PLCs or I/O components can be displayed and monitored within minutes of installing the software.
Since the license fee depends on the number of supervised IP addresses, “Industrial HiVision” is also a cost-effective solution for smaller networks. To see for yourself the benefits of Industrial HiVision 3.0, download a thirty day trial version from “www.hirschmann.com”.
With more and more fuzzers being developed and released we will see a greater impact on poorly implemented control system applications.
Author: Landon Lewis
Posted: May 9th, 2007 under Development Tools, OPC.
Comments: 1
Comments
Comment from Hunter Harrington
Time: May 10, 2007, 10:34 am
Hi Landon,
I just wanted to let you know that the Industrial Automation Protocol PROFINET has support for LLDP in many of the devices and you can use the latest version of Siemens Step 7 5.4+SP2 software to read the topology from the devices which support LLDP (mainly PROFINET switches or switches in the PROFINET devices), but the neat thing is you can map your topology as the tool reads the LLDP MIB using SNMP. No OPC is required in this case as it’s directly built into the Siemens software, but anyone I guess with the right knowledge could develop their own OPC server which does SNMP reads to get the LLDP Mib info and then display in a table or graphical format. Thanks for sharing the information about this LLDP fuzzer tool as I work for the PROFINET Test Lab in North America and this might be interesting to see if we can use in our test procedures or have problems by throwing some ‘fuzz’ at the devices which support LLDP…
Regards,
Hunter Harrington
PROFINET Consulting Engineer
profibus.sea@siemens.com
Write a comment