{"id":516,"date":"2015-08-17T18:23:59","date_gmt":"2015-08-17T15:23:59","guid":{"rendered":"https:\/\/furkansandal.com\/stp-saldiri-yontemleri-ikinci-katman-saldirilari\/"},"modified":"2015-08-17T18:31:59","modified_gmt":"2015-08-17T15:31:59","slug":"stp-saldiri-yontemleri-ikinci-katman-saldirilari","status":"publish","type":"post","link":"https:\/\/furkansandal.com\/stp-saldiri-yontemleri-ikinci-katman-saldirilari\/","title":{"rendered":"STP Sald\u0131r\u0131 Y\u00f6ntemleri (\u0130kinci Katman Sald\u0131r\u0131lar\u0131)"},"content":{"rendered":"
\n

Spanning Tree Protokol\u00fc Nedir?<\/span><\/p>\n

Spanning Tree Protokol\u00fc(STP) karma\u015f\u0131k a\u011f topolojilerinde Katman 2 cihazlar\u0131n\u0131n(Switch), birbiriyle haberle\u015fmesi s\u0131ras\u0131nda meydana gelebilecek sonsuz d\u00f6ng\u00fcleri(loop) engelleyen bir Katman 2 protokol\u00fcd\u00fcr. STP, d\u00f6ng\u00fcleri engellemek i\u00e7in switch \u00fczerinde bulunan baz\u0131 portlar\u0131 bloke durumuna(Block State) getirmektedir. Switchler, port durumlar\u0131n\u0131(Port State) de\u011fi\u015ftirecek STP bilgilerini Bridge Protocol Data Unit arac\u0131l\u0131\u011f\u0131yla payla\u015fmaktad\u0131r.<\/span><\/p>\n

T\u00fcm Katman 2 cihazlar\u0131 birbirleriyle Bridge Protocol Data Unit(BPDU) ad\u0131 verilen \u00f6zel \u00e7er\u00e7eveler(frame) arac\u0131l\u0131\u011f\u0131yla haberle\u015fmektedir. \u00c7er\u00e7eveler, \u00a0d\u00f6ng\u00fclerin olu\u015fmas\u0131n\u0131 engelleyecek ve bunu s\u00fcrekli k\u0131lacak gerekli parametreleri i\u00e7ermektedir(root switch ID, g\u00f6nderen switch ID, root switch\u2019e uzakl\u0131k). BPDU \u00e7er\u00e7eveleri root olarak se\u00e7ilmi\u015f switchten 2sn\u2019de(varsay\u0131lan hello time s\u00fcresidir) bir di\u011fer switchlere g\u00f6nderilmektedir.<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Topolojinin Ger\u00e7ek Hali <\/span> \u00a0\u00a0\u00a0\u00a0\u00a0\u00a0Port Durumlar\u0131n\u0131n Hesaplanm\u0131\u015f Hali <\/span> \u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0A\u011fa\u00e7 G\u00f6sterimi<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Spanning-tree protokol\u00fcne y\u00f6nelik sald\u0131r\u0131lar BPDU \u00e7er\u00e7evelerinin manip\u00fcle edilmesiyle ortaya \u00e7\u0131kmaktad\u0131r. Uygulamas\u0131 yap\u0131lacak sald\u0131r\u0131 t\u00fcrleri DoS Sald\u0131r\u0131s\u0131 ve Man in the Middle Sald\u0131r\u0131s\u0131 olacakt\u0131r.<\/span><\/p>\n

Sald\u0131r\u0131lar Yersinia kullan\u0131larak ger\u00e7ekle\u015ftirilecektir.<\/span><\/p>\n

\u00a0<\/b><\/p>\n

1.Spanning-tree Protokol\u00fc DoS Sald\u0131r\u0131 Y\u00f6ntemi<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Spanning-tree protokol\u00fcn\u00fcn aktif oldu\u011fu bir a\u011f topolojisinde sald\u0131rgan taraf\u0131ndan g\u00f6nderilen \u00e7ok say\u0131da \u2018BPDU Configuration\u2019 paketleri ile a\u011f\u0131 bir s\u00fcreli\u011fine servis d\u0131\u015f\u0131 b\u0131rakmak m\u00fcmk\u00fcn olmaktad\u0131r.<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Verilen topolojide \u2018ubuntu\u2019 ve \u2018win\u2019 makineleri aras\u0131ndaki haberle\u015fmenin bir s\u00fcreli\u011fine kesilmesi ama\u00e7lanmaktad\u0131r.<\/span><\/p>\n

\"Screenshot<\/span><\/div>\n

\u00a0<\/b><\/p>\n

\"stpdos1.png\"<\/span><\/div>\n


\n<\/b><\/p>\n

\"Screenshot<\/span><\/div>\n


\n<\/b><\/p>\n

\"Screenshot<\/span><\/div>\n

\u00a0<\/b><\/p>\n

G\u00f6r\u00fcld\u00fc\u011f\u00fc \u00fczere iki makine aras\u0131ndaki haberle\u015fme sald\u0131r\u0131 s\u0131ras\u0131nda(yakla\u015f\u0131k 30sn) kesilmektedir. Sald\u0131r\u0131 devam etti\u011fi s\u00fcrede saniyede yakla\u015f\u0131k 3000 paket g\u00f6nderilmektedir. <\/span><\/p>\n

\u00a0<\/b><\/p>\n

2.Spanning-tree Protokol\u00fc Man-in-the-Middle Sald\u0131r\u0131 Y\u00f6ntemi<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Spanning Tree Protokol\u00fcn\u00fcn g\u00f6revi, karma\u015f\u0131k bir a\u011f topolojisinde d\u00f6ng\u00fcleri engellemek ve buna g\u00f6re d\u00f6ng\u00fcye sebep olacak portlar\u0131 Bloke durumuna getirmektir. Bu y\u00fczden a\u011f \u00fczerinde dola\u015fan paketlerin izleyece\u011fi alternatif yol say\u0131s\u0131 kalmayacakt\u0131r. Bu noktada, e\u011fer sald\u0131rgan root switch rol\u00fcn\u00fc \u00fcstlenirse t\u00fcm trafi\u011fi izleme yetkisine eri\u015febilmektedir.<\/span><\/p>\n


\n<\/b><\/p>\n

\"Screenshot<\/span><\/div>\n

\"Screenshot<\/p>\n

\u00d6rnek topoloji(yukar\u0131da) incelendi\u011finde sald\u0131rgan a\u011fa dahil olmadan \u00f6nce Spanning-tree protokol\u00fc son hesaplamalar\u0131yla \u015fekildeki a\u011fa\u00e7 yap\u0131s\u0131nda bulunmaktad\u0131r.<\/span><\/p>\n

\"Screenshot<\/p>\n

\u00a0\u00a0\u00a0Sald\u0131rgan(kali) iki switch aras\u0131nda ba\u011flant\u0131 kurduktan sonra bir d\u00f6ng\u00fc problemi olu\u015fmaktad\u0131r(ESW4-ESW5-kali). Bu durumda sald\u0131rgan Root Rol\u00fcn\u00fc \u00fcstlendi\u011finde ESW4 ve ESW5 switchler aras\u0131ndaki portlar bloke durumuna ge\u00e7mektedir.<\/span><\/p>\n

Bir \u00f6nceki \u015femada da g\u00f6r\u00fcld\u00fc\u011f\u00fc gibi bu sald\u0131r\u0131 i\u00e7in iki ethernet kart\u0131na ihtiya\u00e7 duyulmaktad\u0131r. Salg\u0131rgan\u0131n \u00fczerinden ge\u00e7en trafi\u011fi dinlemek i\u00e7in Ettercap kullan\u0131lmaktad\u0131r. Sald\u0131r\u0131 i\u00e7in ise Yersinia program\u0131yla Root Rol\u00fcn\u00fc Talep Etmek(Claiming Root Role) methodu kullan\u0131lmaktad\u0131r. Sald\u0131r\u0131 ba\u015flat\u0131ld\u0131\u011f\u0131nda sald\u0131rgan\u0131n makinesi switch gibi davran\u0131p kendisini Root Switch olarak g\u00f6steren bir \u2018BPDU Configuration\u2019 paketi yay\u0131nlar.<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Uygulama<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Yersinia interaktif modda ba\u015flat\u0131l\u0131r.<\/span><\/p>\n

\u00a0<\/b><\/p>\n

Program STP modda ba\u015flamaktad\u0131r. <\/span><\/p>\n

\u2018i\u2019 tu\u015funa basarak mevcut olan iki aray\u00fcz\u00fc de \u2018ON\u2019 konumuna getirilir.<\/span><\/p>\n

\"Screenshot<\/span><\/div>\n

\u00a0<\/b><\/p>\n

Sald\u0131r\u0131 t\u00fcr\u00fcn\u00fc se\u00e7mek i\u00e7in \u2018x\u2019 tu\u015funa bas\u0131l\u0131r. \u2018Claiming Root Role\u2019 se\u00e7ilerek sald\u0131r\u0131 ba\u015flat\u0131l\u0131r.<\/span><\/p>\n


\n<\/b><\/p>\n

\"Screenshot<\/span><\/div>\n

\u00a0<\/b><\/p>\n

Trafi\u011fi dinlemek \u00fczere Ettercap ba\u015flat\u0131l\u0131r.<\/span><\/p>\n


\n<\/b><\/p>\n


\n<\/b><\/p>\n

\u2018Bridge Sniffing\u2019 \u00f6zelli\u011fi ba\u015flat\u0131l\u0131r. B\u00f6ylece sald\u0131rgan makinesindeki iki a\u011f aray\u00fcz\u00fc aras\u0131ndaki trafik, dolay\u0131s\u0131yla makine \u00fczerinden ge\u00e7en trafik izlenmi\u015f olacakt\u0131r.<\/span><\/p>\n


\n<\/b><\/p>\n

\"Screenshot<\/span>\"Screenshot<\/span><\/div>\n
\"Screenshot<\/span><\/div>\n<\/div>\n

Furkan SANDAL<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"

Spanning Tree Protokol\u00fc Nedir? Spanning Tree Protokol\u00fc(STP) karma\u015f\u0131k a\u011f topolojilerinde Katman 2 cihazlar\u0131n\u0131n(Switch), birbiriyle haberle\u015fmesi s\u0131ras\u0131nda meydana gelebilecek sonsuz d\u00f6ng\u00fcleri(loop)…<\/p>\n","protected":false},"author":1,"featured_media":477,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_mi_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","footnotes":""},"categories":[6,1,9,10,7,4],"tags":[78,76,88,89,26,83,81,79,82,77,80,84,85,87,86],"aioseo_notices":[],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/furkansandal.com\/wp-content\/uploads\/2015\/08\/tekno.jpg?fit=480%2C343&ssl=1","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p6BM7I-8k","amp_enabled":true,"_links":{"self":[{"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/posts\/516"}],"collection":[{"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/comments?post=516"}],"version-history":[{"count":0,"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/posts\/516\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/media\/477"}],"wp:attachment":[{"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/media?parent=516"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/categories?post=516"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/furkansandal.com\/wp-json\/wp\/v2\/tags?post=516"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}