tunneling through hotspot firewall
Posted by Daniel Gultsch on Apr 22
Hey guys,
this is my first posting on this mailling list. I kinda hope this is
the right place. However lets get to the point.
Suppose I’d have an unencrypted wireless lan with an dhcp server and a
router integreted in the access point. By default a firewall is
blocking all traffic coming…
Re: tunneling through hotspot firewall
Posted by Paul Melson on Apr 24
On Wed, Apr 22, 2009 at 7:35 AM, Daniel Gultsch <daniel_at_gultsch.de> wrote:
> Ok, lets further suppose I’d have on succesfully logged in (and
> whitelisted) client). An evil attackers joins the notework as well –
> not beeing able to connect to the outside world (because…
URL: http://seclists.org/pen-test/2009/Apr/0145.html
Re: tunneling through hotspot firewall
Posted by Aarón Mizrachi on Apr 24
On Miércoles 22 Abril 2009 07:05:51 Daniel Gultsch escribió:
> Hey guys,
>
> this is my first posting on this mailling list. I kinda hope this is
> the right place. However lets get to the point.
>
> Suppose I’d have an unencrypted wireless lan with an dhcp server and a
…
URL: http://seclists.org/pen-test/2009/Apr/0157.html
Re: tunneling through hotspot firewall
Posted by Daniel Gultsch on Apr 24
On Fri, 24 Apr 2009 11:41:30 -0430
Aarón Mizrachi <unmanarc_at_gmail.com> wrote:
> It could work… but, some wireless hotspot blocks UDP traffic and
> only allow 80 and 443 TCP… With TCP, the clone computer will emit
> an ICMP or RST closing your connection.
well yeah….
URL: http://seclists.org/pen-test/2009/Apr/0158.html
Re: tunneling through hotspot firewall
Posted by Daniel Gultsch on Apr 24
On Fri, 24 Apr 2009 00:17:13 -0400
Paul Melson <pmelson_at_gmail.com> wrote:
> You will run into issues with sequence numbers in the 802.11 frames.
I read a paper that the sequence numbers could be checked but usually
aren’t. I could google it again but it was something with…
URL: http://seclists.org/pen-test/2009/Apr/0159.html
Re: tunneling through hotspot firewall
Posted by Paul Melson on Apr 26
On Fri, Apr 24, 2009 at 3:01 PM, Daniel Gultsch <daniel_at_gultsch.de> wrote:
> I read a paper that the sequence numbers could be checked but usually
> aren’t. I could google it again but it was something with "mac spoofing
> detection sequence numbers"
I’ve read…
URL: http://seclists.org/pen-test/2009/Apr/0165.html