Re: Identification of non Cisco AP's

From: hfortier (hfortier_at_recon.cx)
Date: 07/27/05

  • Next message: ben creitz: "Re: Identification of non Cisco AP's"
    Date: Wed, 27 Jul 2005 15:03:50 -0400
    To: Jonathan Gauntt <jon0966@yahoo.com>
    
    

    I would use nmap to port scan/banner grab all port 80 and drop any IIS,
    Apache, Netscape then I would then check manually the rest of ip that
    matched.

    I would also check the mac address of the network device on my network,
    and then veryfying manually all the device that matched the mac. There
    is list of mac address used by accesspoint available freely on the net
    http://svn.kismetwireless.net/code/trunk/conf/ap_manuf. If your switch
    and routers are snmp enabled, you could probe them to find trace of
    those mac been used. Advantage with this solution is that you'll notice
    quickly if a AP get hooked in.

    Hugo

    Jonathan Gauntt wrote:

    >Hi,
    >
    >I have been tasked with the project of scanning and identifying all non
    >Cisco wireless access points within the company’s network.
    >
    >We have about 800 /22 and /24 subnets, and because of the IP addressing
    >scheme in place, might just be easier for me to scan the whole class A range
    >of IP’s.
    >
    >I have access to Nessus and GFI Security Scanner. Since we over 8000 IP’s
    >in place, does anyone have any advice on the best way to identify these non
    >Cisco AP’s such as Linksys and Netgear, etc.
    >
    >I wouldn’t want to have a report produced that is two miles long unless
    >absolutely necessary.
    >
    >Thanks,
    >
    >
    >Jonathan
    >
    >
    >
    >
    >
    >
    >


  • Next message: ben creitz: "Re: Identification of non Cisco AP's"

    Relevant Pages

    • TidBITS#794/29-Aug-05
      ... This week's issue brings a potpourri of Mac news, ... Mark Anbinder looks briefly at Google Talk, ... Adding Tiger's AirPort Preferred Network List ...
      (comp.sys.mac.digest)
    • Apples new software may steal the show
      ... Steve Jobs, Apple Computer's co-founder and performer in chief, rarely shows any reluctance to sell -- or even over-sell -- his company's accomplishments. ... Jobs spent only about five minutes talking about what I see as the big news of the day: Apple's first software for using a home network through a television screen rather than a computer monitor. ... Apple's Mac OS X, the software running all its Macintosh computers, also has built-in features for easily connecting Macs in a network. ...
      (comp.sys.mac.advocacy)
    • Re: OK first real Mac Complaint - Network Trouble
      ... changing the channel on my router has cleared up wireless issues on my ... have to reset it when the connection dies. ... to suck up a large amount of network bandwidth to do unnecessary screen ... It should at least help to identify what the Mac ...
      (comp.sys.mac.misc)
    • Re: About War Driving ..
      ... However, MAC filtering does not qualify as defense in depth, ... because the attacker can spoof a valid IP address. ... broadcasting the SSID doesn't hide a network, but just makes it show up ... machines in your building that you can control and check the MAC ...
      (Security-Basics)
    • Re: Wired security improvements
      ... I have a lot of experience with 802.1x in a wireless environment and it ... option than MAC Authentication via RADIUS as far as security is concerned, ... it can only provide a weak form of network authentication. ...
      (Security-Basics)