Originally Posted By: tman
You don't need to do man in the middle. You can ARP spoof the gateway or flood the switch with MAC addresses so it starts broadcasting on every port. Its very easy to do both with something like dsniff.

Didn't realize how trivial that was to do. Networking is definitely one of my weaknesses in the IT field, and I think for now, I'll continue to leave it to the experts to implement anything large scale and secure. I left HP before iSCSI and FC over IP was becoming popular, so I missed out on the training there. Fibre SAN networks were much simpler to secure and maintain.