Community discussions

MikroTik App
 
elnagar_ali
newbie
Topic Author
Posts: 27
Joined: Mon Aug 28, 2006 3:14 am

i hacked my friend wisp - he use user manager 3.13

Thu Sep 18, 2008 1:28 am

plz its a big Trouble
my friend have wisp using mikrotik user manager 3.13
and he asked me to try to hack the wisp
frist i open netcut and take one cilent data -ip address and mac address
and change my ip and mac to the same this client
first i write the ip address manauly and then change the mac

when i do that i haked the wisp and i can open web site and opsn yahoo messanger
i have full access to the internet
plz some one tell me - how to protect the mikrotik router os from this hack?
 
aldalil
Frequent Visitor
Frequent Visitor
Posts: 62
Joined: Mon Jun 25, 2007 3:43 am

Re: i hacked my friend wisp - he use user manager 3.13

Thu Sep 18, 2008 11:44 am

Hi Ali,

It depends on how much your network design is complicated and what internet access authentication is required.

As you mentioned, there was no any kind of security or wireless encryption, then you can access the network easily.
The internet access authentication is by assigned IP address to a MAC address, supposing that there are no 2 identical MAC on the same network and also no 2 IP address on the same network. (As the MAC address can be easily changed to a virtual MAC address, then you have to use different kind of authentication depending on your requirements.)

Suggestions:
1- use any kind of security encryption for your wireless network.
2- For internet access, try to use PPPoE or hotspot.

Regards,
Alaa
 
User avatar
janisk
MikroTik Support
MikroTik Support
Posts: 6263
Joined: Tue Feb 14, 2006 9:46 am
Location: Riga, Latvia

Re: i hacked my friend wisp - he use user manager 3.13

Thu Sep 18, 2008 2:02 pm

for wireless use wireless encryption like WPA or WPA2, for wired you have to use pppoe to ecnrypt data, so no one can sniff unencrypted data over your network.
 
elnagar_ali
newbie
Topic Author
Posts: 27
Joined: Mon Aug 28, 2006 3:14 am

Re: i hacked my friend wisp - he use user manager 3.13

Fri Sep 19, 2008 3:26 am

i will wait more ideas
 
QpoX
Member
Member
Posts: 385
Joined: Mon Mar 24, 2008 7:42 pm
Location: Lemvig, Denmark

Re: i hacked my friend wisp - he use user manager 3.13

Fri Sep 19, 2008 3:41 am

PPPoE? or VPN?
 
aldalil
Frequent Visitor
Frequent Visitor
Posts: 62
Joined: Mon Jun 25, 2007 3:43 am

Re: i hacked my friend wisp - he use user manager 3.13

Sat Sep 20, 2008 1:21 pm

i will wait more ideas
:)
 
elnagar_ali
newbie
Topic Author
Posts: 27
Joined: Mon Aug 28, 2006 3:14 am

Re: i hacked my friend wisp - he use user manager 3.13

Sun Sep 21, 2008 1:55 am

there is no more ideas but i will wait the admin to answer my q?
 
aldalil
Frequent Visitor
Frequent Visitor
Posts: 62
Joined: Mon Jun 25, 2007 3:43 am

Re: i hacked my friend wisp - he use user manager 3.13

Sun Sep 21, 2008 3:43 am

Hi Ali,

If you are just waiting the admin to reply, then it is better to push them an email and ask them for support !
But, I guess this is not a support issue, and all what you need as you mentioned above is sharing idea, usually testers can answer you.

Good luck.
Rgds,
Alaa
 
User avatar
butche
Trainer
Trainer
Posts: 430
Joined: Fri May 28, 2004 6:14 pm
Location: Missouri, USA
Contact:

Re: i hacked my friend wisp - he use user manager 3.13

Sat Sep 27, 2008 9:57 pm

my friend have wisp using mikrotik user manager 3.13
and he asked me to try to hack the wisp
frist i open netcut and take one cilent data -ip address and mac address
and change my ip and mac to the same this client
first i write the ip address manauly and then change the mac

when i do that i haked the wisp and i can open web site and opsn yahoo messanger
i have full access to the internet
plz some one tell me - how to protect the mikrotik router os from this hack?
So your friend is not very good at protecting his network. User Manager is not a security tool. It is just a radius server in Mikrotik. If you were able to get in that easily, then what you are looking for is not just a simple answer. Add encryption to the wireless segment to make it harder to see the data (DO NOT BOTHER WITH WEP). Use the hotspot for auth. Use PPPoE for auth. Use PPtP tunnels for transit. There are LOTS of ways to create a secure network. You want a complete engineered solution? http://www.butchevans.com/. It will not be cheap, but it will be secure. I am sure there are others here who would be willing to help for a fee.
Another thought is attending a training class that would teach you (or your friend) about security options built into MT and how to implement them. My website will show upcoming information about courses that can do that. The Security course is the one you/he want(s).