12.07.2015 Views

Bypassing NAC v2.0 - OSSIR

Bypassing NAC v2.0 - OSSIR

Bypassing NAC v2.0 - OSSIR

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

DHCP In-A-BoxRogue DHCP Server• The first DHCP server’s reply to reach a host sending a DHCPrequest would assign the DHCP server responding to be usedby the element– Assign the element a “quarantined” IP address– Direct DNS traffic to the rogue DHCP Server by assigning the DNSserver’s IP address with the DHCP reply to the rogue DHCP server– Present the user with a look-a-like authentication page (usingHTTPS, preferred)– Abuse the credentials collected• For example, wait for the disconnection of the element andabuse its credentials• Etc.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!