<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Authentication flood attack in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353889#M69008</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;Thank You for that. I will analyse it ASAP.&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;I forgot that station first must to authenticate and then can associate not opposite. So blocking the MAC will not protect us against authentication flood.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;regards&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Darek&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 06 Nov 2013 17:08:08 GMT</pubDate>
    <dc:creator>dszendol</dc:creator>
    <dc:date>2013-11-06T17:08:08Z</dc:date>
    <item>
      <title>Authentication flood attack</title>
      <link>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353887#M69006</link>
      <description>&lt;P style="margin: 0cm; margin-bottom: .0001pt;"&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;I am receiving on my WLC alarm form IDS about "authentication flood attack"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"&lt;SPAN style="font-size: 10pt;"&gt;IDS Signature attack detected. Signature Type: Standard, Name: Auth&amp;nbsp; flood, Description: Authentication Request flood, Track: per-signature,&amp;nbsp; Detecting AP Name: AP-xxx, Radio Type: 802.11b/g, Preced: 5, Hits:&amp;nbsp; 500, Channel: 11, srcMac: xxxx"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;I put that MAC into disabled clients database but I am still receiving that alarm.&lt;/P&gt;&lt;P style="margin: 0cm 0cm 0.0001pt;"&gt;How it is possible. I could understand if it was "deauthentication flood attack" as we can do nothing with that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Darek&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 08:13:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353887#M69006</guid>
      <dc:creator>dszendol</dc:creator>
      <dc:date>2021-07-04T08:13:08Z</dc:date>
    </item>
    <item>
      <title>Authentication flood attack</title>
      <link>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353888#M69007</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI,&lt;/P&gt;&lt;P&gt; Use this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a008063e5d0.shtml"&gt;http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a008063e5d0.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Nov 2013 08:03:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353888#M69007</guid>
      <dc:creator>Sandeep Choudhary</dc:creator>
      <dc:date>2013-11-06T08:03:39Z</dc:date>
    </item>
    <item>
      <title>Authentication flood attack</title>
      <link>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353889#M69008</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;Thank You for that. I will analyse it ASAP.&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;I forgot that station first must to authenticate and then can associate not opposite. So blocking the MAC will not protect us against authentication flood.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;regards&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Darek&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Nov 2013 17:08:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authentication-flood-attack/m-p/2353889#M69008</guid>
      <dc:creator>dszendol</dc:creator>
      <dc:date>2013-11-06T17:08:08Z</dc:date>
    </item>
  </channel>
</rss>

