Chapter 15 Rogue AP Detection
NWA-3500/NWA-3550 User’s Guide
181
that of a neighbor (for example) you should also add these APs to the list, as they
do not compromise your own network’s security. If you do not add them to the
friendly AP list, these access points will appear in the
Rogue AP
list each time the
NWA scans.
“Honeypot” Attack
Rogue APs need not be connected to the legitimate network to pose a severe
security threat. In the following example, an attacker (
X
) is stationed in a vehicle
outside a company building, using a rogue access point equipped with a powerful
antenna. By mimicking a legitimate (company network) AP, the attacker tries to
capture usernames, passwords, and other sensitive information from
unsuspecting clients (
A
and
B
) who attempt to connect. This is known as a
“honeypot” attack.
Figure 114
“Honeypot” Attack
If a rogue AP in this scenario has sufficient power and is broadcasting the correct
SSID (Service Set IDentifier) clients have no way of knowing that they are not
associating with a legitimate company AP. The attacker can forward network traffic
from associated clients to a legitimate AP, creating the impression of normal
service. This is a variety of “man-in-the-middle” attack.
This scenario can also be part of a wireless denial of service (DoS) attack, in which
associated wireless clients are deprived of network access. Other opportunities for
the attacker include the introduction of malware (malicious software) into the
network.
Summary of Contents for 802.11a/g Wireless CardBus Card ZyXEL AG-120
Page 2: ......
Page 8: ...Safety Warnings NWA 3500 NWA 3550 User s Guide 8...
Page 10: ...Contents Overview NWA 3500 NWA 3550 User s Guide 10...
Page 20: ...Table of Contents NWA 3500 NWA 3550 User s Guide 20...
Page 22: ...22...
Page 34: ...Chapter 1 Introducing the NWA NWA 3500 NWA 3550 User s Guide 34...
Page 52: ...Chapter 4 Management Mode NWA 3500 NWA 3550 User s Guide 52...
Page 108: ...108...
Page 146: ...Chapter 9 SSID Screen NWA 3500 NWA 3550 User s Guide 146...
Page 160: ...Chapter 10 Wireless Security Screen NWA 3500 NWA 3550 User s Guide 160...
Page 178: ...Chapter 14 IP Screen NWA 3500 NWA 3550 User s Guide 178...
Page 186: ...Chapter 15 Rogue AP Detection NWA 3500 NWA 3550 User s Guide 186...
Page 198: ...Chapter 16 Remote Management Screens NWA 3500 NWA 3550 User s Guide 198...
Page 260: ...Chapter 21 Load Balancing NWA 3160 Series User s Guide 260...
Page 264: ...Chapter 22 Dynamic Channel Selection NWA 3160 Series User s Guide 264...
Page 276: ...Chapter 23 Maintenance NWA 3500 NWA 3550 User s Guide 276...
Page 277: ...277 PART III Troubleshooting and Specifications Troubleshooting 279 Product Specifications 285...
Page 278: ...278...
Page 284: ...Chapter 24 Troubleshooting NWA 3500 NWA 3550 User s Guide 284...
Page 292: ...292...
Page 368: ...Appendix D Importing Certificates NWA 3500 NWA 3550 User s Guide 368...
Page 386: ...Appendix F Text File Based Auto Configuration NWA 3500 NWA 3550 User s Guide 386...