02-26-2003 02:00 AM - edited 07-04-2021 08:32 AM
Is there a possibility to identify a WLAN user on the wired network?
How can I make sure, that nobody places a rogue AP in the network and get access to the wired network or a employee puts in a WLAN card and allows a
non-employee to access to the network from outside?
Is there a mechanism to identify such a constellation like all the adaptors have
a special MAC Address or something like that?
Many thanks!
03-02-2003 11:39 AM
Hi ,
a) There is no good method for this . There are different tools to identify rogue AP but all are site survey tool , you physically go to all places and detect the
signal for rogue AP .
b) You can turn on MAC address authenitcation saying that only certain mac are are allowed to associate with AP , that way you can control wlan client adapter .But mac address goes in clear text so it can be spoofed .
c) Cisco AP12.01 has new feature to detect rogue AP but it s light duty tool and works under certain condition
d) Best is to have strict corporate policy for rogue AP
e) If you are connecting over switch on switch you can run EAP and protect ethernet switch port and authenitcate ethernet switch ports
Nilesh
03-03-2003 06:46 AM
Thanks Nilesh
And what about a client which is in Peer-to-Peer mode? A Hacker may come through that client which is also connected to the wired LAN.
think there is no possibility at all?
Regards
Stefan
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide