Service Desk 0300 300 2212

JANET Wireless Technology Advisory Service

About WTAS | Case Studies | Technology | Calls for Participation | Request Advice

 

Advisory News:

WPA not as secure as previously thought

Follow link to PC World news article

Cisco Security Advisory (19/10/2007):

Cisco have released an advisory warning of a DoS vulnerability on some of their EAP authenticators, see:

http://www.cisco.com/warp/public/707/cisco-sr-20071019-eap.shtml

According to the advisory, the following products are vulnerable if they have an EAP authenticator enabled:

- Access Points and 1310 Wireless Bridges running Cisco IOS in autonomous mode

- All Cisco switches running affected versions of Cisco IOS

- All Cisco switches running affected versions of Cisco CatOS

A firmware upgrade seems to be the recommended solution.

According to the advisory, the following are NOT vulnerable:

Access Points

- Access Points running VxWorks (Cisco 1000s)

- Lightweight Access Point (LAP) in local mode

- Lightweight Access Point (LAP) in H-/REAP mode

- 1310 Wireless Bridge operating in LWAPP mode

- 1410 Wireless Bridge. # Wireless LAN Controllers

- Cisco Airespace 3500 Series WLAN Controller

- Cisco Airespace 4000 Series Wireless LAN Controller

- Cisco 2000 series wireless LAN controllers

- Cisco 2100 Series Wireless LAN Controllers

- Cisco 4100 Series Wireless LAN Controllers

- Cisco 4400 Series Wireless LAN Controllers

- Cisco Wireless LAN Controller Module (NM-AIR-WLC6-K9)

- Cisco Catalyst 3750 Series Integrated WLC

- Cisco Catalyst 6500 Series WiSM

Wireless Integrated Routers (Wireless Access Point - Wireless EAP and Wired EAP)

- Cisco 800 Series Routers

- Cisco 1800 Series Integrated Services Routers

- Cisco 2800 Series Integrated Services Routers

- Cisco 3200 Series Wireless and Mobile Routers

- Cisco 3800 Series Integrated Services Routers

Mobile Wireless

- Cisco 521 Wireless Express Access Point (both as Autonomous AP and LWAPP)

- Cisco 526 Wireless Express Mobility Controller

 

Any problems, comments or suggestions regarding this page, please e-mail the WTAS service manager