04-24-2019 11:26 PM - edited 07-05-2021 10:17 AM
Dear all:
mi wlc 5508 log show me this message :
- IDS Signature attack detected. Signature Type: Standard, Name: NULL probe resp 1, Description: NULL Probe Response - Zero length SSID element, Track: per-Mac, Detecting AP Name:
-Client Deauthenticated: MACAddress:64:c2:de:24:aa:3a Base Radio MAC:70:e4:22:aa:c0:80 Slot: 1 User Name: unknown Ip Address: unknown Reason:Authentication rejected because of challenge failure ReasonCode: 15
it is possible to block the attack on the affected AP, this is causing users to leave the network, with Deauthenticated attacks
- Rogue AP : 90:06:28:6a:71:c1 removed from Base Radio MAC : e4:aa:5d:2c:d2:00 Interface no:0(802.11n(2.4 GHz))
please share some advice or config on my WLC 5508-
regards
04-25-2019 07:24 AM
04-25-2019 07:31 AM
Hi @patoberli
thanks for your advice, i need ask! if i just set it up as contained. Who performs this action in the ap rouge?
regards
04-25-2019 08:07 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide