<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic MAC-Based Authentication in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40305#M20993</link>
    <description>&lt;P&gt;I am sorry if this has been asked before or it is the wrong place to ask this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just want to know how secure is MAC-Based Authentication on an AP340 access-point (not bridge) with version 11.07.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've done this by adding 'Dest MAC Address' in 'Address Filters' under 'Association' in 'Setup'.  &lt;/P&gt;&lt;P&gt;Also selected 'Disallowed' for 'Default Unicast Address Filter' for all the relevant authentication types in 'Advanced' for 'AP Radio' of the 'Network Ports' in 'Setup'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any suggestions.&lt;/P&gt;</description>
    <pubDate>Mon, 05 Jul 2021 05:51:27 GMT</pubDate>
    <dc:creator>raviuk</dc:creator>
    <dc:date>2021-07-05T05:51:27Z</dc:date>
    <item>
      <title>MAC-Based Authentication</title>
      <link>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40305#M20993</link>
      <description>&lt;P&gt;I am sorry if this has been asked before or it is the wrong place to ask this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just want to know how secure is MAC-Based Authentication on an AP340 access-point (not bridge) with version 11.07.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've done this by adding 'Dest MAC Address' in 'Address Filters' under 'Association' in 'Setup'.  &lt;/P&gt;&lt;P&gt;Also selected 'Disallowed' for 'Default Unicast Address Filter' for all the relevant authentication types in 'Advanced' for 'AP Radio' of the 'Network Ports' in 'Setup'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any suggestions.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 05:51:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40305#M20993</guid>
      <dc:creator>raviuk</dc:creator>
      <dc:date>2021-07-05T05:51:27Z</dc:date>
    </item>
    <item>
      <title>Re: MAC-Based Authentication</title>
      <link>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40306#M20994</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cisco say they're "not appropriate as a security handle". Take a look at the bottom of &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/cc/pd/witc/ao350ap/prodlit/1327_pp.htm" target="_blank"&gt;http://www.cisco.com/warp/public/cc/pd/witc/ao350ap/prodlit/1327_pp.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I agree with them. MAC authentication might discourage casual wireless sniffers, but it's not a serious technical control.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Nov 2001 10:32:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40306#M20994</guid>
      <dc:creator>matthew.joyce</dc:creator>
      <dc:date>2001-11-08T10:32:23Z</dc:date>
    </item>
    <item>
      <title>Re: MAC-Based Authentication</title>
      <link>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40307#M20995</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Some older units allow the MAC to be overridden!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Nov 2001 17:49:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40307#M20995</guid>
      <dc:creator>dave.reid</dc:creator>
      <dc:date>2001-11-08T17:49:08Z</dc:date>
    </item>
    <item>
      <title>Re: MAC-Based Authentication</title>
      <link>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40308#M20996</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If an attacker has a network analizer, they can see the MAC address in use (even if WEP is being used as the MAC must not be encrypted)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Some 802.11 NICs allow the user to configure a MAC address into the NIC.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So the attacker *could*:&lt;/P&gt;&lt;P&gt;1. observe a valid NIC in use&lt;/P&gt;&lt;P&gt;2. program that MAC into their NIC&lt;/P&gt;&lt;P&gt;3. Wait till the valid user has gone home&lt;/P&gt;&lt;P&gt;4. Use the NIC they have programmed to access your network from the safty of the parking lot.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;LEAP or VPNs provide a much more secure solution&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 Nov 2001 02:20:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-based-authentication/m-p/40308#M20996</guid>
      <dc:creator>bmcmurdo</dc:creator>
      <dc:date>2001-11-16T02:20:41Z</dc:date>
    </item>
  </channel>
</rss>

