Categories
Welcome Center
Education & Development
Cyber Security
Virtualization
General
Certification Preparation
Project Management
Posts
Groups
Training Resources
Infosec
IT & Security Bootcamps
Practice Exams
Security Awareness Training
About Us
Home
General
Off-Topic
Multicast IPs strictly locally significant?
Node Man
Hi Everyone,
Here is a question for the follow-the-packet experts. Are multicast packets strictly locally significant? Is there any way a malicious user from outside the network can use them?
For example, in a 10.0.0.0 network, will 224.0.0.0 multicasts *only* be visible to the LAN? Or can a malicious user see them? Can a multicast packet be directed out to the internet in a usable way?
Thanks!
Find more posts tagged with
Comments
MAC_Addy
It depends on what the routing is between the routers for the "internet" side. Typically it's BGP, it does multicast, but I don't think it can be used in a malicious manner.
fredrikjj
It depends on whether the routers are enabled for IP multicast forwarding, and whether there is multicast state installed in the forwarding tables via PIM. If you are not using multicast, there won't be, and the multicast packets will not leave the local subnet even if someone sends packets with TTL > 1.
PS.
"Can a multicast packet be directed out to the internet in a usable way?"
Only if you use tunneling techniques.
Quick Links
All Categories
Recent Posts
Activity
Unanswered
Groups
Best Of