cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
497
Views
2
Helpful
4
Replies

Problema con AP Hogareños

supercanal
Level 1
Level 1

Buenos dias Gente, Le hago una pregunta tengo un WLC de Cisco con 10 AP air-ap2802i-a-k9 en la oficna, pero tengo problema con varios AP Hogareños que colocan en la oficina de manera clandestina y se solapan las señales y el WIFI empieza andar mal, apararte de la Seguridad, queria ver si desde los equipos Cisco ap2802i o del WLC hay alguna forma de hacer un ataque a eso WIFI Hogareños (DoS) para que no se puedan loguear y asi que lo saquen. Saludos

4 Replies 4

marce1000
Hall of Fame
Hall of Fame

 

- Si busca problemas al hacer esto, el controlador inalámbrico asigna canales y potencia a los puntos de acceso para optimizar la cobertura inalámbrica en la oficina. Interferirá con la red al instalar puntos de acceso autónomos. Abandone este plan y convierta también esos puntos de acceso al modo cliente (CAWAP).

  M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

Rich R
VIP
VIP

What you are referring to is called containment - using spoofed de-authorisation frames to interrupt communications between rogue APs and clients.  You should be very careful about enabling containment because it can be illegal in many situations in most countries and there are well known cases of authorities prosecuting for illegal use of containment.  Remember the unlicensed WiFi frequencies are a shared public resource.
https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-10/config-guide/b_cg810/wireless_intrusion_detection_system.html#rogue-management

RichR_0-1743077803162.png

What you should be doing is using equipment to physically locate the offending APs (if they are on your property) and advise their owners to remove or adjust them according to company policy and get HR involved if necessary.  If the APs are not on your property then your only option is a friendly chat with your neighbours.

Thank you very much for the response. This is for the company only; they've been warned to remove all Wi-Fi equipment, but they continue to do so.

Well that is something that needs to be enforced or else folks will continue to do whatever they want to do.  I would think that you can track these down since the environment seems pretty small and give warnings, take away the gear you find, etc.  Trying to block ports will not stop people from doing what they want to do, they will figure it out.  Its a security issue more than anything.

-Scott
*** Please rate helpful posts ***
Review Cisco Networking for a $25 gift card