Network scan tool/appliance horror stories

Jones, Barry BEJones at
Tue Oct 30 17:57:02 UTC 2012

Speaking of scan tools, does anyone have recommendations for tools to do baseline configurations on Windows systems? Looking for pre-change configuration baseline and post change configuration baseline - to identify differences implemented by the change?


From: Chuck Church 
Sent: Tuesday, October 30, 2012 10:23 AM
To: nanog at
Subject: RE: Network scan tool/appliance horror stories

Network scan tools are a great way to verify what important protocols you left out of your control plane policing non-default policies.  Had a scanner totally clog up our 6500 core router DHCP relay (ip helper) function once.
Uggghhh, security people....


