Networking Forums

Networking Forums > Wireless Networking > Wireless Internet > Question on broadcast data encryption using WPA

Reply
Thread Tools Display Modes

Question on broadcast data encryption using WPA

 
 
sec123
Guest
Posts: n/a

 
      09-19-2005, 01:24 PM

When broadcast frames are transmitted by an AP working in WPA security
mode, is the MIC added to the encrypted frames always, or is it
optional or is it not added at all. Can anyone please clarify this
point

thanks!
/mbr

 
Reply With Quote
 
 
 
 
Jeff Liebermann
Guest
Posts: n/a

 
      09-19-2005, 05:16 PM
On 19 Sep 2005 06:24:40 -0700, "sec123" <(E-Mail Removed)> wrote:

>When broadcast frames are transmitted by an AP working in WPA security
>mode, is the MIC added to the encrypted frames always, or is it
>optional or is it not added at all. Can anyone please clarify this
>point


That's muddled. By NIC, I'll assume you mean MAC address of the NIC
card that originated the traffic.

All management frames, including SSID broadcasts, are send
unencrypted. You want the whole world to hear those or things like
SSID identification, session initialization, and such will not work.

Wireless is nothing more than bridging, where 802.3 ethernet packets
are encapsulated inside 802.11 packets. The MAC address of the
originating wireless device is transmitted in the clear or bridging
would not work. However, the MAC addresses in the encapsulated 802.3
ethernet packets, are encrypted as part of the payload. I'm not sure
exactly what you mean by "broadcast frames" but if you're thinking of
802.3 broadcasts, they're encrypted along with the rest of the
encapsulated ethernet stuff.

The only difference between WEP and WPA is the way the keys are
exchanged. The payload is exactly the same RC4 cipher (although WPA
can optionally do AES encryption).



--
Jeff Liebermann (E-Mail Removed)
150 Felker St #D http://www.LearnByDestroying.com
Santa Cruz CA 95060 http://802.11junk.com
Skype: JeffLiebermann AE6KS 831-336-2558
 
Reply With Quote
 
David Taylor
Guest
Posts: n/a

 
      09-19-2005, 06:32 PM
> >When broadcast frames are transmitted by an AP working in WPA security
> >mode, is the MIC added to the encrypted frames always, or is it
> >optional or is it not added at all. Can anyone please clarify this
> >point

>
> That's muddled. By NIC, I'll assume you mean MAC address of the NIC
> card that originated the traffic.


MIC = Message Integrity Check

Unless he means otherwise?
 
Reply With Quote
 
Jeff Liebermann
Guest
Posts: n/a

 
      09-19-2005, 06:59 PM
On Mon, 19 Sep 2005 18:32:28 GMT, David Taylor <(E-Mail Removed)>
wrote:

>> >When broadcast frames are transmitted by an AP working in WPA security
>> >mode, is the MIC added to the encrypted frames always, or is it
>> >optional or is it not added at all. Can anyone please clarify this
>> >point

>>
>> That's muddled. By NIC, I'll assume you mean MAC address of the NIC
>> card that originated the traffic.


>MIC = Message Integrity Check
>Unless he means otherwise?


Duh. I saw NIC. I guess it's time to change fonts from Fixedsys 9pt
to something else as the N and M look almost identical. Sorry.

MIC is Message Integrity Check and is part of 802.11i WPA2. It's
claim to fame is that it protects both the payload and the header,
instead of just the payload. It also includes a frame counter and
thus prevents replay attacks.

I can't answer the question on how MIC is used without doing
considerable reading on WPA2, TKIP, the Michael algorithm, and Message
Authentication Code tags. Maybe someone else can answer.





--
Jeff Liebermann (E-Mail Removed)
150 Felker St #D http://www.LearnByDestroying.com
Santa Cruz CA 95060 http://802.11junk.com
Skype: JeffLiebermann AE6KS 831-336-2558
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
VPN data encryption type A.Sabry Windows Networking 2 07-06-2008 06:08 AM
Is there any way to secure the data through the os bottom encryption? Tech11 Linux Networking 0 05-09-2006 10:35 AM
help on broadcast data lost in linux tcp/ip stack Zhang Huan Linux Networking 5 04-27-2006 02:18 PM
changing data encryption john glass Wireless Networks 0 11-30-2005 02:51 AM
Data encryption WEP enabled or disabled Marco A. castro Windows Networking 2 05-29-2004 03:23 AM



1 2 3 4 5 6 7 8 9 10 11