Hi there,
First of i know there are a few work arounds to this problem like adding security on the network, but i want to know if this is any kind of attack?.
I have a 21m tower on the highway, it have 2 r52 radios on a 532A Routerboard, works great but lately, it has hotspot and a pppoe server running, hotspot for people near can connect (theres a gas station 100m away) i have on each r52 a 90 degree sector antennas at 2.4Ghz, the problem is that lately i have like 200 clients connected, at least 200 mac addresses because none of them tries to get IP from the hotspot, its just connected, but the sectors are set to a 4km radius. The problem here is that the clients connected with a cpe uses a router and pppoe but when theres a lot of macs registered the bandwith slows down like crazy.. if i do a speedtest i get 200k at most! if i put all unknown macs in access list and remove them from auth and forward i get my bandwith again..
To show you how serious this is.. all this macs are copied to my acl this week.. the thing is that the tower its in a 4 lane highway and theres NOTHING but the trees and a couple of houses at the beach (2 -> 4km).. any idea if this could be an attack.? im almost sure it is.. but ? how?
This is my access list of all the "intruders" connected to this ap..
http://pastebin.com/3F0QKtf1