roy at gnomon.org.uk
Fri Jan 16 19:36:35 EST 2004
>>>>> "Jouni" == Jouni Malinen <jkmaline at cc.hut.fi> writes:
Jouni> wpa_supplicant configures the driver to drop all
Jouni> unencrypted frames (both TX and RX), so this scenario
Jouni> should not happen if wpa_supplicant is running.
Does it do this before backgrounding itself (to avoid the race
Jouni> Closest think to this in the current version would be to
Jouni> disable unencrypted frames with 'iwpriv wlan0
Jouni> drop_unencrypte 1' just after loading the driver. This does
Jouni> not prevent association, but should prevent data traffic
Jouni> (unless of course encryption keys are set).
Hmm, are the encryption keys really unset, or just set to default values?
ie could an attacker set up a WEP-enabled AP with the correct default
keys and exchange traffic that way?
More information about the HostAP