To register for an Internet.com membership to receive newsletters and white papers, use the Register button ABOVE.
To participate in the message forums BELOW, click here
Search
Search internet.com
News Reviews Insights Tutorials WiMax VoIP HotSpots Forums Events Products Glossary About


Go Back   Wi-Fi Planet Forums > Wi-Fi Planet Forums > Security

Security Here's where to discuss security issues, as they pertain to 802.11 wireless networks.

Reply
 
Thread Tools Rate Thread Display Modes
  #1  
Old 10-19-2002, 04:53 PM
Mike Mike is offline
Registered User
 
Join Date: Oct 2002
Posts: 19
Access Control

Is there anyone actually here or is the same 2 people looking over and over at threads?

On to the issue......

Anyone have an opinion on just how much extra security access control gives you. If I underestand it correctly, access control *should* allow only the mac addresses of approved stations to connect to the network. BUT, are mac id's sent in cleartext? If so, wouldn't they be as easy to get as everything else?

Also, doesn't this feature simply keep the intruder from accessing and using your bandwidth. It's probably not going to keep them from sniffing the network if they want to. Mmmmmm.....

Thanks,

-Mike

I really gotta read the rfc.

Last edited by Mike; 10-19-2002 at 05:22 PM.
Reply With Quote
  #2  
Old 10-24-2002, 09:13 AM
JimGeier JimGeier is offline
Registered User
 
Join Date: Aug 2002
Location: Yellow Springs, Ohio
Posts: 282
An access controller generally works as a security gate between the access point and the protected (wired) side of the network. Someone can still sniff the packet transmissions on the wireless side of the network, which can comprimise the security.

If MAC addresses are sent in the clear, then someone can discover a legitimate MAC address and start using it (i.e., MAC address spoofing). A way that some access control mechanisms guard against MAC address spoofing is to monitor the sequence numbers used in 802.11 frames. If the numbers are not consecutive for a given end user (which is likely if someone starts spoofing the MAC address), then the access control mechanism can raise a red flag (i.e., set off alarm, block access, etc.).
Reply With Quote
  #3  
Old 10-29-2002, 07:20 PM
JoeTampa JoeTampa is offline
Registered User
 
Join Date: Sep 2002
Posts: 116
To defeat that "security mechanism", you simply spoof a deauthenticate frame from the AP to the client in question, then assume his MAC and associate before he retries. Then HE is the intruder.

MAC address filtering/access control is the most egregious example of overwhelmingly burdensome administrative overhead for worthless returns I have ever seen.
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Forum Jump


All times are GMT -5. The time now is 12:13 PM.



>> Wi-Fi Planet Marketplace