Benefits of hiding your SSID: None

by Volker Weber

Comments

have you chosen hidden wlan?

normaly you have to enter the SSID then, so it's not plain open to everyone. :-(

First of all you know there is a WLAN. Then you sniff for it. And then you have the SSID.

Could it be that the admin in question just named his WLAN "Hidden"? Then it could have been the same guy who ran a WLAN named "Volldepp" in Munich recently.

Konstantin, iirc there are some device that will display "hidden" WLANs like that. Finding a hidden WLAN is in fact quite easy. You just have to look for packets addressed to an AP/Router you do not see. That's because the name of the receiving AP/Router is always contained in the packet in clear text. And that's exactly why it doesn't make any sense at all to hide the SSID: your clients will disclose it anyway.

Same thing is true for restricting WLAN access to some MAC addresses - you sniff, you find a MAC which is allowed in, you fake the MAC. Make sure you either use WPA(2) with a really good key or a VPN - cracking WEP is a matter of minutes nowadays.

Urban Hillebrand, 2007-05-28 17:30

True, true. Somewhat related: Am I just unable to find them or did Apple really never release any updates for the Airport cards on the PPC platform? There were at least three for the Intel platform this year and since one of my friends is having trouble using WPA2 with the iBook I tried to find the updates but wasn't able to locate any.

> that's exactly why it doesn't make any sense at all to
> hide the SSID: your clients will disclose it anyway.

Ah, so if no clients ever access the router, it's secure, right?

Secure your PC three easy steps.

Post a comment











Shall I remember this for you?




Use your full name and a working email address. Unless you want your comment to be removed. No kidding.



Recent comments

Volker Weber on BIS customers now getting instant IMAP e-mail at 10:38
Dirk Steins on BIS customers now getting instant IMAP e-mail at 10:26
Yury Kats on Site news: Chrome already accounts for almost 10% of page hits at 02:59
Volker Weber on BIS customers now getting instant IMAP e-mail at 23:04
Stuart Mcintyre on BIS customers now getting instant IMAP e-mail at 22:59
Volker Weber on BIS customers now getting instant IMAP e-mail at 22:09
Jan-Piet Mens on BIS customers now getting instant IMAP e-mail at 22:01
Ingo Seifert on Nur bei Regen at 19:53
Dirk Steins on Nur bei Regen at 09:01
Carl Tyler on Everybody's PIN Number: Revealed! at 01:09
Armin Roth on Everybody's PIN Number: Revealed! at 00:43
Frank L. Quednau on Everybody's PIN Number: Revealed! at 23:42
Volker Weber on Everybody's PIN Number: Revealed! at 22:00
Chris Linfoot on Everybody's PIN Number: Revealed! at 21:57
Jan-Piet Mens on Everybody's PIN Number: Revealed! at 21:39
Marco Klop on Synchronizing iPhone with ... Lotus Notes at 18:55
sunny gerscky on Pwnage 2.0 released at 16:00
Tobias Lange on Remember, it's always the cable at 13:16
Volker Weber on Remember, it's always the cable at 12:21
Ian White on Remember, it's always the cable at 11:56
Andy Brunner on Remember, it's always the cable at 11:37
Ben Rose on Remember, it's always the cable at 11:33
Ben Poole on It has only been less than two hours at 09:44
Frank L. Quednau on It has only been less than two hours at 09:29
Martin Hiegl on It has only been less than two hours at 08:27

Ceci n'est pas un blog

vowe.net is a personal website published by Volker Weber a.k.a. vowe. I am an author, consultant and systems architect based in Darmstadt, Germany.

rss Click here to subscribe

Hello

About me
Contact
Publications
Certificates
Frequently asked questions

Twitter Updates

More >

Poll

Can you bring a camera phone to work?

Getting poll results. Please wait...

Local time is 12:51

visitors.gif
131 visitors online

News

Other sources of news, imported into my own format to make them more accessible:

Heise Online
Schlagzeilen
Weather

Archives

As most of my articles roll off the front page rather quickly, I am making an archive of previous posts available here. You can also use the handy search box at the top of the page if you are looking for something particular.

Last 30 days
More archives

Got the T-shirt?

Got the T-shirt?
Are you buying from the US?

Systems Architecture

This site runs on an Apache web server on top of the Linux operating system. The content is managed with MovableType which is implemented in Perl. Last but not least the HTML code your browser sees is put together with PHP.

© 1992-2008 Volker Weber.
All Rights Reserved.

Impressum