Vulnerability Development mailing list archives

Re: spoofing the ethernet address


From: hdm () SECUREAUSTIN COM (H D Moore)
Date: Sun, 5 Mar 2000 21:44:47 -0600


Pauli Ojanpera wrote:

I'm not a expert in this field (in any way) but...

What do you think, would it be possible, feasible or just nice
to apply some kind of a public key authentification to the
hardware addresses so that the address would be the 'challenge'
I don't know if that is the right word even.

IMHO the reason that this hasnt been done yet (or has it?) is because in
most LAN environments anyone trying to do something sneaky with MAC
address spoofing is close enough to smack around.  On semi-public LAN's
(cable/dsl), switches (smart hubs) can be used to restrict traffic out
to the rest of the network by MAC address, preventing any spoofs.

-HD

http://www.secureaustin.com


Current thread: