On Fri, 21 Jul 2006 19:35:50 -0500,
ibuprofin@painkiller.example.tld
(Moe Trin) wrote in <slrnec2sn6.1g1.ibuprofin@compton.phx.az.us>:
>We know the MAC address of _everything_ that is connected to our net.
>Any unknown MAC or a known MAC vs IP mismatch observed causes that race
>between the guards and the NOC staff to see who can get to the drop
>first. On several of the subnets, we've taken it further, and alarm if
>a known MAC _or_ IP appears on the wrong switch port.
You won't necessarily be able to catch a sophisticated spoof that way.
Better to rely on strong authentication.
--
Best regards, FAQ for Wireless Internet: <http://Wireless.wikia.com>
John Navas FAQ for Wi-Fi: <http://wireless.wikia.com/wiki/Wi-Fi>
Wi-Fi How To: <http://wireless.wikia.com/wiki/Wi-Fi_How_To>
Fixes to Wi-Fi Problems: <http://wireless.wikia.com/wiki/Wi-Fi_Fixes>