Mar 28 2005

Still trying to absorb this one

Published by Martin at 12:04 pm under IDS

Layer 2 Analysis of WLAN Discovery Applications for Intrusion Detection

I’m still trying to decypher some of the packet captures in this article. It’s interesting that a coworker was asking about this topic just this morning. The article goes into a level of detail I rarely see, but could be hard to swallow in one reading.

The author suggests poisoning network management traffic to mislead passive wireless sniffers. I can only imagine this being viable in the most sterile of network environments, which few of us will ever see. I couldn’t do this in my network, there’s too much allowed on the wire/over the airwaves for it to be reliable.

[Slashdot] [Digg] [Reddit] [del.icio.us] [Facebook] [Technorati] [Google] [StumbleUpon]

One Response to “Still trying to absorb this one”

  1. Rory.Blogon 05 Apr 2005 at 9:34 am

    link to an interesting article on L2 WLAN stuff

    Martin McKeay’s Network Security Blog: Still trying to absorb this one A pointer to an interesting article to read……

Trackback URI |