MACSec

  Рет қаралды 5,947

Phil Anderson

Phil Anderson

Күн бұрын

Media Access Control Security .... A cool security option on enterprise devices.

Пікірлер: 12
@ViperzITG
@ViperzITG 3 жыл бұрын
Hello Phil, Thanks for the video, maybe go a bit deeper on the way the encryption is done ?
@tkhue3296
@tkhue3296 Жыл бұрын
Reading Cisco CCNP official cert guide book and the MACSec part relly hard to follow. Phil bring us the AHA moment just straight to the point what MACSec is and why we need it.
@johnsutton608
@johnsutton608 3 жыл бұрын
I cannot believe I am only now finding this channel...
@jadanabil8044
@jadanabil8044 10 күн бұрын
How can I understand it through pcap?
@phil.anderson
@phil.anderson 6 күн бұрын
What is a PCAP file? Key word there is Packet. But you want to go lower than Layer 3... So your question is can you get to those Layer 2 frames from data in a PCAP file? If the capture was made with Wireshark, you can filter the capture down to individual MAC frames where you can see the the encrypted contents. If the PCAP was captured in some other way, I'm not sure if that level of detail would be there. Perahps someone with more experience can provide a better answer around different tools and their ability to go down to individual frames.
@tonykososki3016
@tonykososki3016 2 жыл бұрын
it was very nice explanation thank you!
@sobinpeter9803
@sobinpeter9803 Жыл бұрын
Thank you. Is it possible to use macsec on a layer3 network.
@phil.anderson
@phil.anderson Жыл бұрын
Let's think about that question a bit and tear it down... MACSec is a layer 2 thing... but a TCP/IP network, in a more overall sense, is also operating at layer 3 so that when that layer 2 frame hits the local router and gets decrypted, that device can know where the layer 3 packet that was encapsulated within that frame needs to go. So yes, things work together, but the technology of MACSec is working at layer 2 before it moves up the OSI model and gets out over the network at the higher levels. Think about a dumb switch... It works at layer 2 to figure out where to move frames. What is inside those frames doesn't matter to the dumb switch because it only cares about the MAC address and what port to move the frame to. If our switch becomes a little smarter, we can start using encryption to ensure that nothing listening between the endpoint and our smarter switch can see the entire frame. Maybe more importantly, frames between the smarter switch to the local router can be encrypted, again making sure all the frames have encryption to protect data while it is still moving around inside our LAN. If protecting data in motion is very important at the LAN level, this solves many security concerns about data moving in an unencrypted way.
@reneeschaefer4740
@reneeschaefer4740 3 жыл бұрын
Great explanation Phil! Thank you
@tonykososki3016
@tonykososki3016 2 жыл бұрын
i would be glad to get something more in dept from you!
@a.k.m.ahasankabir9768
@a.k.m.ahasankabir9768 3 жыл бұрын
Thanks for sharing the information. It is very useful
Policies, Standards, Procedures, and Guidelines
5:59
Phil Anderson
Рет қаралды 8 М.
Automotive MACsec Architecture
31:08
IEEE Standards Association
Рет қаралды 2,3 М.
The selfish The Joker was taught a lesson by Officer Rabbit. #funny #supersiblings
00:12
Minecraft Creeper Family is back! #minecraft #funny #memes
00:26
Zero-trust network encryption with IEEE 802.1AE MACsec layer-2 security
11:56
Axis Communications
Рет қаралды 1,2 М.
Confusion vs Diffusion
4:30
Phil Anderson
Рет қаралды 5 М.
MACsec   Securing Data in Motion Without Performance Penalty
31:56
Open Compute Project
Рет қаралды 2,6 М.
MACSec (Media Access Control Security) Overview
15:38
Balram Shekhawat
Рет қаралды 17 М.
Trustsec: Overview of Trustsec and Terminology
12:03
Katherine McNamara
Рет қаралды 19 М.
Port Security vs Port Based Authentication (802.1x) Whats the Difference?
13:12
Security in Ethernet Networks - MACsec explained
3:53
NXP Semiconductors
Рет қаралды 340
I took the Cisco ENCOR exam, this is what you need to know
12:11
Silesio Carvalho
Рет қаралды 3,8 М.
Arista MACSEC(802.1AE)
12:12
networking institute
Рет қаралды 3,7 М.
Security ChalkTalks: Learn Cisco Stealthwatch
20:18
Cisco
Рет қаралды 70 М.
The selfish The Joker was taught a lesson by Officer Rabbit. #funny #supersiblings
00:12