Discussion:
SSID hiding and NetStumbler
(too old to reply)
Chakravarthy K Sannedhi
2004-02-07 21:21:31 UTC
Permalink
I read some where that NetStumbler performs active scanning, it sends
probes to find out active wireless networks. Then, how come it fails
to detect a wireless network if the SSID is turned off on APs?

TIA
gary
2004-02-08 05:11:15 UTC
Permalink
Netstumbler is designed to be "polite", which means it does not do passive
scanning. Read "Detecting Netstumbler" on page 5 of

http://home.jwu.edu/jwright/papers/l2-wlan-ids.pdf

for a little tutorial on what Netstumbler does. There are descriptions here
of how other stumbler tools work.

Basically, Netstumbler sends an active probe with an empty SSID string
("universal SSID"). APs normally respond to this with their actual BSSID,
except that APs that are configured to not broadcast SSID usually do NOT
respond, and therefore will not be seen by Netstumbler.

The feature of not broadcasting SSID (and not responding to universal SSID)
is technically a violation of the 802.11 standard, although it is quite
commonly implemented. One security guy has written a whitepaper on why this
feature is evil and should not be relied on. The fact is that tools more
sophisticated (and less polite) than Netstumbler have ways to force your
network to cough up its SSID and/or BSSID (either one can be used to get the
other). Also, in a roaming network. broadcast SSID is required for proper
handoff.

However, for a single-AP home network it actually does add a little extra
insurance, at least against people with crude tools.
Post by Chakravarthy K Sannedhi
I read some where that NetStumbler performs active scanning, it sends
probes to find out active wireless networks. Then, how come it fails
to detect a wireless network if the SSID is turned off on APs?
TIA
docshasta
2004-02-09 04:23:55 UTC
Permalink
I actually enjoy broadcasting the SSID. You can send really nice detailed
messages such as "get lost assholes" or "the police are coming" to
wardrivers who park by your curb at night trying to crack in.
Post by gary
However, for a single-AP home network it actually does add a little extra
insurance, at least against people with crude tools.
Continue reading on narkive:
Loading...