RE: wireless access point

From: Bo Mendenhall (Bo.Mendenhall_at_hsc.utah.edu)
Date: 06/06/03

  • Next message: dave: "RE: Securing a Win2k DNS server outside firewall..."
    Date: Fri, 06 Jun 2003 14:25:01 -0600
    To: <security-basics@securityfocus.com>
    
    

    Please correct me if I'm wrong:

    Marvin's Statement below is true because eventually someone who has the SSID for an AP will hop on the AP, at which time it broadcasts the SSID, so Netstumbler would potentially pick it up the SSID at that point.

    >>> "Myers, Marvin" <MRMyers@anteon.com> 06/06/03 12:34PM >>>
    That is not entirely true. Netstumbler does in fact detect AP's that do not broadcast their SSID, it just takes longer. I have proven this on more than one occasion using NetStumbler on XP with both Orinoco and Netgear cards.

    -----Original Message-----
    From: Christopher Harrington [mailto:charrington@syseng.com]
    Sent: Friday, June 06, 2003 1:23 PM
    To: lod@acmesecurity.org; security-basics@securityfocus.com
    Subject: RE: wireless access point

    Netstumbler does not detect AP's that do not broadcast their SSID. I know Kismet and Wellenreiter do, I cant speak for the others.

    --Chris

    -----Original Message-----
    From: Luiz Otávio Duarte [mailto:lod@acmesecurity.org]
    Sent: Thursday, June 05, 2003 9:54 PM
    To: security-basics@securityfocus.com
    Subject: RE: wireless access point

    Hi,

    >Is there any way of detecting wireless access point that doesn't
    >broadcast
    >the SSID?

    Yep, It's possible. I will tell you why:

       We have two probing modes for channels in a 802.11 network.

      - Activing probe - Is when the prober machine exchange some probe frames
    with the AP.

      - RFMON - Radio Frequency Monitor (Passive probe) - when the probe machine
    capture all data in the channel and try to find some SSID (Service Set
    Identification)

      You can find AP that does not broadcast the SSID using any probe technique.

      You can use: Netstumbler, DStumbler, Kismet, Wellenreiter, THC-RUT,
    WEPCrack, AirSnort, ....

    That's All Folks!

    -- 
    ##
    # Luiz Otávio Duarte (lod at acmesecurity dot org)
    # www.acmesecurity.org/~lod 
    ##
    # ACME! (Computer Security Research)
    # www.acmesecurity.org 
    ##
    # Unesp - São José do Rio Preto - São Paulo - Brazil
    ##
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------
    ---------------------------------------------------------------------------
    Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
    The Gartner Group just put Neoteris in the top of its Magic Quadrant,
    while InStat has confirmed Neoteris as the leader in marketshare.
         
    Find out why, and see how you can get plug-n-play secure remote access in
    about an hour, with no client, server changes, or ongoing maintenance.
              
    Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
    ----------------------------------------------------------------------------
    

  • Next message: dave: "RE: Securing a Win2k DNS server outside firewall..."

    Relevant Pages

    • Re: wireless router password security
      ... But please omit the step where disabling SSID broadcast. ... trying to connect to someone else's network. ... someone to connect to my wireless router. ...
      (alt.computer.security)
    • Re: wireless router password security
      ... But please omit the step where disabling SSID broadcast. ... to connect to someone else's network. ... HOW do they send a packet to the router? ...
      (alt.computer.security)
    • RE: wireless access point
      ... > it broadcasts the SSID, so Netstumbler would potentially pick ... > AP's that do not broadcast their SSID, ... > The Gartner Group just put Neoteris in the top of its Magic Quadrant, ...
      (Security-Basics)
    • RE: wireless access point
      ... Subject: wireless access point ... Netstumbler does in fact detect AP's that do not broadcast their SSID, ... I have proven this on more than one occasion using NetStumbler on XP with both Orinoco and Netgear cards. ...
      (Security-Basics)
    • Re: Strange Wireless Networking Issue
      ... If you've never, EVER heard that not broadcasting the SSID is not a recommended security measure, and think that the opposite is true and that suppressing SSID broadcast is a "standard and accepted practice," then you haven't been listening and looking in the right places. ... You are correct that in the early days of home wireless networking, not broadcasting SSID was suggested as one techniques that could be used to "protect" your wireless network. ...
      (microsoft.public.windowsxp.network_web)