Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.internet.wireless
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 09-19-2005, 02:24 PM
sec123
Guest
 
Posts: n/a
Default Question on broadcast data encryption using WPA


When broadcast frames are transmitted by an AP working in WPA security
mode, is the MIC added to the encrypted frames always, or is it
optional or is it not added at all. Can anyone please clarify this
point

thanks!
/mbr


Reply With Quote
  #2 (permalink)  
Old 09-19-2005, 06:16 PM
Jeff Liebermann
Guest
 
Posts: n/a
Default Re: Question on broadcast data encryption using WPA

On 19 Sep 2005 06:24:40 -0700, "sec123" <mohanrbr@gmail.com> wrote:

>When broadcast frames are transmitted by an AP working in WPA security
>mode, is the MIC added to the encrypted frames always, or is it
>optional or is it not added at all. Can anyone please clarify this
>point


That's muddled. By NIC, I'll assume you mean MAC address of the NIC
card that originated the traffic.

All management frames, including SSID broadcasts, are send
unencrypted. You want the whole world to hear those or things like
SSID identification, session initialization, and such will not work.

Wireless is nothing more than bridging, where 802.3 ethernet packets
are encapsulated inside 802.11 packets. The MAC address of the
originating wireless device is transmitted in the clear or bridging
would not work. However, the MAC addresses in the encapsulated 802.3
ethernet packets, are encrypted as part of the payload. I'm not sure
exactly what you mean by "broadcast frames" but if you're thinking of
802.3 broadcasts, they're encrypted along with the rest of the
encapsulated ethernet stuff.

The only difference between WEP and WPA is the way the keys are
exchanged. The payload is exactly the same RC4 cipher (although WPA
can optionally do AES encryption).



--
Jeff Liebermann jeffl@comix.santa-cruz.ca.us
150 Felker St #D http://www.LearnByDestroying.com
Santa Cruz CA 95060 http://802.11junk.com
Skype: JeffLiebermann AE6KS 831-336-2558

Reply With Quote
  #3 (permalink)  
Old 09-19-2005, 07:32 PM
David Taylor
Guest
 
Posts: n/a
Default Re: Question on broadcast data encryption using WPA

> >When broadcast frames are transmitted by an AP working in WPA security
> >mode, is the MIC added to the encrypted frames always, or is it
> >optional or is it not added at all. Can anyone please clarify this
> >point

>
> That's muddled. By NIC, I'll assume you mean MAC address of the NIC
> card that originated the traffic.


MIC = Message Integrity Check

Unless he means otherwise?

Reply With Quote
  #4 (permalink)  
Old 09-19-2005, 07:59 PM
Jeff Liebermann
Guest
 
Posts: n/a
Default Re: Question on broadcast data encryption using WPA

On Mon, 19 Sep 2005 18:32:28 GMT, David Taylor <djtaylor@bigfoot.com>
wrote:

>> >When broadcast frames are transmitted by an AP working in WPA security
>> >mode, is the MIC added to the encrypted frames always, or is it
>> >optional or is it not added at all. Can anyone please clarify this
>> >point

>>
>> That's muddled. By NIC, I'll assume you mean MAC address of the NIC
>> card that originated the traffic.


>MIC = Message Integrity Check
>Unless he means otherwise?


Duh. I saw NIC. I guess it's time to change fonts from Fixedsys 9pt
to something else as the N and M look almost identical. Sorry.

MIC is Message Integrity Check and is part of 802.11i WPA2. It's
claim to fame is that it protects both the payload and the header,
instead of just the payload. It also includes a frame counter and
thus prevents replay attacks.

I can't answer the question on how MIC is used without doing
considerable reading on WPA2, TKIP, the Michael algorithm, and Message
Authentication Code tags. Maybe someone else can answer.





--
Jeff Liebermann jeffl@comix.santa-cruz.ca.us
150 Felker St #D http://www.LearnByDestroying.com
Santa Cruz CA 95060 http://802.11junk.com
Skype: JeffLiebermann AE6KS 831-336-2558

Reply With Quote
Sponsored Links
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Gain the best from existing resources to improve data security Andy Lotus comp.security.misc 0 02-04-2007 07:00 AM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 10-19-2005 05:37 AM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 08-30-2005 05:26 AM
Re: Using The Internet To Store Data Galicean comp.security.misc 2 08-12-2005 01:13 AM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 07-31-2005 05:25 AM


All times are GMT. The time now is 01:04 PM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45