<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Web authentication allows DNS tunnelling in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/web-authentication-allows-dns-tunnelling/m-p/854332#M20228</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have noticed that with only web authentication, the guest client can send DNS requests through the wireless network and out to the internet via the controller prior to being authenticated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then, using DNS tunnelling techniques, could surf the web, albeitly slowly, without authenticating.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there anyway to stop this other than turning on WPA/WEP authentication on the WLAN ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lee&lt;/P&gt;</description>
    <pubDate>Sat, 03 Jul 2021 21:37:24 GMT</pubDate>
    <dc:creator>lee.messenger</dc:creator>
    <dc:date>2021-07-03T21:37:24Z</dc:date>
    <item>
      <title>Web authentication allows DNS tunnelling</title>
      <link>https://community.cisco.com/t5/wireless/web-authentication-allows-dns-tunnelling/m-p/854332#M20228</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have noticed that with only web authentication, the guest client can send DNS requests through the wireless network and out to the internet via the controller prior to being authenticated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then, using DNS tunnelling techniques, could surf the web, albeitly slowly, without authenticating.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there anyway to stop this other than turning on WPA/WEP authentication on the WLAN ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lee&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jul 2021 21:37:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/web-authentication-allows-dns-tunnelling/m-p/854332#M20228</guid>
      <dc:creator>lee.messenger</dc:creator>
      <dc:date>2021-07-03T21:37:24Z</dc:date>
    </item>
    <item>
      <title>Re: Web authentication allows DNS tunnelling</title>
      <link>https://community.cisco.com/t5/wireless/web-authentication-allows-dns-tunnelling/m-p/854333#M20229</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;WPA authentication is a better method of authenticatiing the clients in the network.Wi-Fi Protected Access is a standards-based, interoperable security enhancement that strongly increases the level of data protection and access control for existing and future wireless LAN systems&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://cisco.com/en/US/docs/wireless/access_point/12.2_11_JA/configuration/guide/s11auth_ps430_TSD_Products_Configuration_Guide_Chapter.html#wp1039377" target="_blank"&gt;http://cisco.com/en/US/docs/wireless/access_point/12.2_11_JA/configuration/guide/s11auth_ps430_TSD_Products_Configuration_Guide_Chapter.html#wp1039377&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_configuration_example09186a00801c40b6.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_configuration_example09186a00801c40b6.shtml&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Sep 2007 20:22:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/web-authentication-allows-dns-tunnelling/m-p/854333#M20229</guid>
      <dc:creator>bwilmoth</dc:creator>
      <dc:date>2007-09-19T20:22:38Z</dc:date>
    </item>
  </channel>
</rss>

