Security

A simple scan of the Port Genie with Nessus and nmap didn't reveal any ports that were not expected. Furthermore, looking at the results from both Nessus and nmap didn't reveal any vulnerability with the open ports. One option that would be nice would be the ability to turn off the port used by the print server if one decides not to use that feature.




Click to enlarge.


One problem that was discovered is the authentication process while using both the web and email client. The security configuration of the authentication process of Apache is set to basic authentication. What this means is that the passwords are basically sent clear text through the network. Using dsniff, we were able to retrieve the passwords of accounts sent over the network without any problems.

This shouldn't be as critical of an issue for users who are using the Post Genie as a router, since the only threat of packet sniffing will only be internal. For users who are connecting to the Post Genie through the internet, that is another matter. The possibility of having your passwords sniffed is quite rare, but possible, particularly on fast networks (like universities and corporate businesses). Hopefully, Armor Link can change the authentication method used in a future update.

Software/Utility CD

Unfortunately, the evaluation copy did not come shipped with the Software/Utility CD. This was a problem, since the default user name and password for the Post Genie is in the manual. Also, neither Armor Link nor ICP Electronics have the manual available for download from their website. However, the issue was resolved relatively quick, as we were provided a PDF version by Armor Link's support staff.

Benchmark

Using basic shell commands, we were able to stress test the Post Genie with relative ease. Using a constant stream of 4,000 emails an hour, over the course of three hours, the response of the Post Genie was still quite good. There was a slight second delay in the web mail loading and the email clients downloading new headers, but that was to be expected.

Depending on the number of emails in your inbox, the load time can vary from near instantaneous to a couple of minutes. In our benchmark test, 12,000 emails were sent to one recipient address and it took approximately 15 minutes for the web mail client to display the headers. Using Email clients did not result in any difference in speed when using the same method of retrieval such as IMAP. The download times were reduced by half when on the same physical network as the Post Genie. Web mail and email client access to other accounts without the 12,000 email loaded the inbox without delay.

Next, we simulated 75 simultaneous connections with 10 transactions over a course of a minute to the web server using other simple Perl scripts. Response time with both the web email and email clients were almost identical when the server was idle.

Administration Conclusion
Comments Locked

14 Comments

View All Comments

  • assemblage - Wednesday, July 14, 2004 - link

    "Cornerstone of the Computer industry" shows that you have fantastical imagination.
  • kmmatney - Tuesday, July 13, 2004 - link

    Very interesting. If the system is reliable, then the $1000 price isn't bad at all.
  • gdetweil - Tuesday, July 13, 2004 - link

    It would be great to have a networking section on the website to easily find networking related articles since you know have a staffer for networking.
  • Saist - Tuesday, July 13, 2004 - link

    As far as I know, Net-Itech http://www.net-itech.com/ did this several years ago and is still doing it.
  • Marlin1975 - Tuesday, July 13, 2004 - link

    "Anand - review the Geode!!! Pleeeease"


    I agree. I thought the 1Ghz versions are SocketA. That and they are supposed to kill the VIA cpus in perormance and offer lower power.

    Also has anybody seen them forsale yet?
  • nserra - Tuesday, July 13, 2004 - link

    Why the 8 LAN ports, isn't this too much for very small offices? Or this is an all in one solution. No switch required?

    The idea is good it only need's redefining.
  • Booty - Tuesday, July 13, 2004 - link

    Good review - well written. I'd been hoping that AT would have more networking-related articles, so it's good to see they brought you on board. Keep up the good work.
  • BrianNg - Tuesday, July 13, 2004 - link

    Thanks for brining that to my attention. I have Kris fix it ASAP.

    Thanks,

    Brian
  • yak8998 - Tuesday, July 13, 2004 - link

    Nice review, are you going to be reviewing more appliances?

    Anand - review the Geode!!! Pleeeease
  • LazyBoyTony - Tuesday, July 13, 2004 - link

    johnsonx

    Give the new guy a break, everyone is allowed to make Typos :P

Log in

Don't have an account? Sign up now