Michael Richardson | 4 May 2005 20:05
Picon

Re: Problems with draft-ietf-mmusic-sdescriptions-09.txt


>>>>> "Marcus" == Marcus Leech <mleech <at> nortel.com> writes:
    Marcus> I will assert (with some expected flamage) that L2 security
    Marcus> technologies, such as they are, are largely designed to
    Marcus> protect the *revenue* of the L2 network operator.  802.11i,
    Marcus> for example, really only protects the first hop, and because
    Marcus> of ARP spoofing, can only reasonably be expected to "lock
    Marcus> out" those who haven't paid/registered, but it can't

  Not only that, it doesn't protect the beacon, so with AP-spoofing is
possible.  Given a settlement system that permits roaming from wireless
network to wireless network, with operators collecting fees, 802.11i
doesn't even protect the *revenue* stream.

--

-- 
] Michael Richardson          Xelerance Corporation, Ottawa, ON |  firewalls  [
] mcr  <at>  xelerance.com           Now doing IPsec training, see   |net architect[
] http://www.sandelman.ca/mcr/    www.xelerance.com/training/   |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [

Gmane