<div dir="ltr">Hi, <div><br></div><div>With vulnerability I refer to the fact that a STA can mimic the MAC address of another one, maybe the wording is not correct. Even if an open network does not provide protection, I'd like to know the feasibility to have two devices with the same MAC address in the same hotspot with internet. </div><div><br></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Wed, Mar 25, 2015 at 9:31 PM, Jouni Malinen <span dir="ltr"><<a href="mailto:j@w1.fi" target="_blank">j@w1.fi</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div class="HOEnZb"><div class="h5">On Wed, Mar 25, 2015 at 03:06:20PM +0100, Imanol Fuidio wrote:<br>
> I'd like to know if it is possible to have working two STAs with the same<br>
> MAC address on an open, non-ciphered, signal. While testing this<br>
> vulnerability I can't have two devices with the same MAC address receiving<br>
> ICMP responses concurrently, has this something to do with how WiFi works?<br>
<br>
</div></div>What do you mean with "working" in this context? You will obviously have<br>
various issues if there are two devices trying to use the same address.<br>
Which vulnerability are you talking about? An open network does not<br>
provide any kind of protection..<br>
<span class="HOEnZb"><font color="#888888"><br>
--<br>
Jouni Malinen                      PGP id EFC895FA<br>
_______________________________________________<br>
HostAP mailing list<br>
<a href="mailto:HostAP@lists.shmoo.com">HostAP@lists.shmoo.com</a><br>
<a href="http://lists.shmoo.com/mailman/listinfo/hostap" target="_blank">http://lists.shmoo.com/mailman/listinfo/hostap</a><br>
</font></span></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature"><div dir="ltr"><div><pre cols="72"><table cellspacing="0" cellpadding="0" border="0" style="font-family:'Times New Roman'"><tbody><tr><td style="width:60px;height:37px"><a href="http://www.fon.com/" target="_blank"><img src="http://corp.fon.com/sites/default/files/filelibrary/firmafon.png" width="60" height="37" title="Fon" alt="Fon" border="0" style="border:0px none"></a></td></tr><tr><td style="border-bottom-width:1px;border-bottom-style:dotted;min-width:100px;font-family:Arial;font-size:10pt;color:rgb(51,51,51);font-weight:bold;padding:15px 0px 3px">Imanol Fuidio</td></tr><tr><td style="padding:5px 0px 1px;font-family:Arial;font-size:7.5pt;color:rgb(102,102,102)">R&D Engineer</td></tr><tr><td style="padding:1px 0px;font-family:Arial;font-size:7.5pt;color:rgb(102,102,102)">+34 946545847</td></tr><tr><td style="padding:1px 0px;font-family:Arial;font-size:7.5pt;color:rgb(102,102,102)">Skype: imanol.fon</td></tr><tr><td style="padding:1px 0px;font-family:Arial;font-size:7.5pt;color:rgb(102,102,102)">All information in this email is <a href="http://corp.fon.com/legal/email-disclaimer" style="color:rgb(102,102,102)" target="_blank">confidential</a></td></tr></tbody></table></pre></div></div></div>
</div>