Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.internet.wireless
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 03-06-2007, 05:47 PM
support@isotech-inc.com
Guest
 
Posts: n/a
Default PADI Packet Flood - Bridged Networks

Here's the situation that I am looking for help with.

We have been and WISP for a couple years, using internal LAN IP
addresses in the 192.168.XXX.XXX realm. We've recently had many
requests for businesses wanting public IP addresses. So I set up a
CentOS linux Bridge: one ethernet card in the internal network, the
other on the public network switch. Both network cards do not have an
IP address in them, but the bridge has a public IP so that I can SSH
into the box to monitor any problems.

It had been working great for a while, until we started having a
problem. Seemingly at random, the network performance just drops.
When I run a tcpdump, it is flooded with hundreds of PPPoE PADI
requests:

"PPPoE PADI [Service-Name] [Host-Uniq "ATWPPPOE"] [EOL]" Over and over
again.

The only way to get the network up and running again is to "ifconfig
bridge-name down" then "ifconfig bridge-name up". I can't sit and
monitor this all day and want to find a way around it. And if I do
this remotely, it knocks my bridge IP address out and I have to go to
location and reset it.

Any of the following work-around will do:
-filtering these packets so they stop flooding my network (with
iptables or something similar)
-responding to these packets in such a way as to stop them from
attempting to connect over and over
-finding the source of these packets and stopping whatever it is from
connecting
-finding the source of these packets and smacking whomever is
responsible upside the head

Any other advise or suggestion is welcome.


Reply With Quote
  #2 (permalink)  
Old 03-07-2007, 02:08 PM
NetSteady
Guest
 
Posts: n/a
Default Re: PADI Packet Flood - Bridged Networks

I've got a suggestion that's not on your list. I see this complaint
all too often from WISPs.

Segment your network.

I would recommend, highly, taking all business connections and
creating an individual VLAN/Subnet for those connections. This will
keep broadcasts from flooding your network, and taking everything
down. At most, you'll take a segment of the network down, but not the
whole thing.

If you want help, please feel free to call.

Chris Hutchison,CEO
NetSteady
1-866-678-WIFI


Reply With Quote
  #3 (permalink)  
Old 03-19-2007, 08:29 PM
support@isotech-inc.com
Guest
 
Posts: n/a
Default Re: PADI Packet Flood - Bridged Networks

Thanks, I will suggest this to my bosses. Anyway I finally figured
out how to eliminate the issue. I set up ebtables on my bridge from
http://ebtables.sourceforge.net/ and used their "Simple Example" to
get it working. Since then, I've tweaked it to better suit our
needs. Other than that, we actually have decided to use an altogether
different frequency for our business customers, and just charge extra
for residential customers want public IP addresses.


Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
WiMAX Forum News, Weekly Clip Report March 22-29, 2007 badger_b@hotmail.com alt.internet.wireless 0 03-31-2007 02:14 AM
Call for Papers with Extended Deadline: 2007 International Conference on Wireless Networks (ICWN'07), June 25-28, 2007, USA A. M. G. Solo comp.security.misc 0 02-26-2007 09:44 PM
Don't fall victim to the 'Free Wi-Fi' scam Ablang alt.internet.wireless 5 02-04-2007 09:44 AM
Unsecured networks open door for hackers, spies miso@sushi.com alt.internet.wireless 6 01-06-2007 09:48 AM
56k dial up on laptop 802.11G ? bumtracks alt.internet.wireless 117 08-06-2005 07:09 PM


All times are GMT. The time now is 11:32 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45