image: netgear mac filter
This Netgear wireless router lets you control wireless station access using MAC addresses, but it's far from foolproof
R E L A T E D   C O N T E N T
ADVERTISEMENT

Hands on: MAC attack

Find out how to use Media Access Control to protect your wireless network

Alan Stevens, Personal Computer World 05 Apr 2007
ADVERTISEMENT

Lately I’ve had several emails asking me to clarify issues raised in recent articles.

Nick Helm in Sheffield was one of several readers to ask about wireless security: “After stating your golden rule – always use some form of encryption – you go on to say that if you don’t use any encryption, ‘you’re not protected and anyone will be able to connect to your wireless network’.

“Does this really apply when you are using Media Access Control (MAC) on your router? Surely not. A packet sniffer will be able to read your wireless data, but how could anyone without an authorised MAC address gain proper access to the network?”

The question is easily answered, but first we need to recap on what MAC address filtering is all about.

MAC filtering in a nutshell
MAC addresses are unique 48-bit numbers, usually represented using six pairs of hexadecimal digits separated by colons, such as 00:09:5B:98:73:46.

Every networking device has one of these addresses, from a Lan adapter to a wireless access point or router, typically encoded into the main Ethernet chip on the hardware itself. They can also be programmed into firmware, adapter drivers and other networking software which, as I’ll explain, is important to bear in mind.

It’s also important to understand that MAC addresses are employed independently of higher level protocols and are used to direct packets to their correct destination. For example, if you need to send TCP/IP packets to an IP address of 192.168.0.1, somewhere along the line that IP address will be translated, using the Address Resolution Protocol (ARP), to the associated MAC address to enable the delivery to take place.

So MAC addresses are used to identify network devices at a fundamental hardware level. On most wireless access points and routers, they can also be used to control access to the Lan and its resources, either by only allowing clients with certain known MAC addresses to connect and exchange information or by explicitly barring known ‘hostile’ clients.


All Home Networks
Tags: Networks

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S
M A R K E T P L A C E
Get your free demo of Numara Track-It! 8 - the leading help desk solution for IT related issues.
Make presentations, review documents & share your entire desktop. 30-day free trial! (cc required).
Discover how remote support can fuel your IT business in ways you've never thought of before.
Apply ITIL best practices at your service desk while eliminating integration cost. Learn more here.
WAN based, automated, daily vulnerability assessments. Click here to try and request our whitepapers.
Have your product or service listed here >   
Sponsored links
F E A T U R E D   J O B S
Milton Keynes, Buckinghamshire, United Kingdom | EDS
Job Description To be primarily an expert in a particular technology (Midrange UNIX), LINUX and use the knowledge to architect infrastructure solutions for clients. Role To produce customised midrange solutions for clients. Where solutioning cannot ... more >
Sutton, Surrey, United Kingdom | Royal Marsden Hospital NHS Trust
  The Royal Marsden NHS Foundation Trust is a centre of excellence for research, development, education and care in the treatment of cancer. Analyst Programmers, Band 6, £23,458-£31,779 plus 15% HCAS, Sutton, Surrey We are ... more >
Maidstone, United Kingdom | Kent Police
  Assistant Forensic Computer Analyst - Police Headquarters, Maidstone, £20,164 - £23,632 Permanent Contract Digital devices and information communication technology are present in almost every investigation the police service undertakes. Kent Police Digital Forensics Unit ... more >
Newcastle, Tyne And Wear, United Kingdom | EDS
About EDS EDS provides a broad portfolio of business and technology solutions to help its clients worldwide improve their business performance. EDS' core portfolio comprises information-technology and business process outsourcing services, as well as information-technology ... more >
More job opportunities