iTnews
  • Home
  • News
  • Technology
  • Networking

Locking down Linux.conf.au

By Sam Gentle
Jan 23 2012 2:45PM
Follow google news

Conference organisers zero in on rogue wireless access points.

Give five hundred very technically proficient Linux enthusiasts unfettered access to the same Wi-Fi network and you might be asking for trouble.

Locking down Linux.conf.au

Nearly every year, network administrators at Linux.conf.au, Australia’s premiere open source conference, have to deal with some sort of shenanigans on the network.

Chief among the concerns for conference network admin Steve Walsh has been the appearance of mysterious rogue wireless access points with the same or similar names to the official network.

Usually it’s an accident, Walsh explained. "People set up their Android phone as a hotspot, get lazy and use the same network name. But that's really obvious because the connection is so slow."

But things aren't always that innocent, as the enthusiast crowd have the skills - and often the anti-authority motivation - to attack the wireless network.

"We had someone in 2009 with a unit that did a Denial of Service attack, stopping anyone else from using the network while they got to use all the bandwidth,” Walsh told iTnews at this year’s event.

“And in 2005 there was someone in [conference founder] Rusty Russell's talk that rebroadcast the network, intercepting everyone's traffic."

Those Man-in-the-Middle attacks are serious, potentially leading to data or identity theft. Secure websites and services will display an error when this happens, but many users ignore the warnings.

Fortunately, most Linux.conf.au attendees are highly security-conscious.

"Rusty just saw the warning and immediately powered off his laptop,” Walsh said.

It's not easy to prevent wireless attacks.

Once a perpetrator knows that conference organisers are on their tail, they simply close their laptop or turn off their device, and become effectively undetectable. It's a cat and mouse game where the mouse can turn invisible on demand.

But for the past few events, the admins have had a secret weapon: some advanced Linux-based wireless arrays contributed by the conference’s in-kind sponsor Xirrus.

These arrays come armed with an “intrusion prevention and detection system", says Matt Sutherland, Wi-Fi Engineer at Xirrus, such that if there is "any anomaly on the network, we can spot it and attack it".

That is to say, rather than waiting around for attacks to happen, the conference's access points actively search for unauthorised networks and pre-emptively strike before they can do any damage.

They can also passively locate attackers, and even intercept their communication, without it being obvious that anything different is happening.

More importantly, because it's a wireless array rather than a single unit, these monitoring and security activities can occur independently of providing a continuous wireless connection to all conference-goers.

Last week's conference saw the return of a mysterious rogue access point, but Walsh wasn’t too worried.

"There's always someone,” he said. “We give them three hours, and if they haven't come forward by then we just start tweeting their location and it tends to go away by itself."

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:
lcalinuxnetworknetworkingsecurityxirrus

Related Articles

  • Anthropic pulls Mythos-class models globally Anthropic pulls Mythos-class models globally
  • AudiA6 crypto launderers arrested, network taken down by police AudiA6 crypto launderers arrested, network taken down by police
  • US charges suspected Russian hacker with facilitating cyber campaign US charges suspected Russian hacker with facilitating cyber campaign
  • Gov looks for upstream threat blocking by telcos, cloud operators Gov looks for upstream threat blocking by telcos, cloud operators
Join our WhatsApp Channel

Partner Content

Agile isn’t the problem: why projects still fail, and what’s missing
Partner Content Agile isn’t the problem: why projects still fail, and what’s missing
Scalable AI solutions: secure delivery
Scalable AI solutions: secure delivery
AI is delivering business value today
Partner Content AI is delivering business value today
CommBank creates opportunities for technologists to upskill  with frontier AI companies
Partner Content CommBank creates opportunities for technologists to upskill with frontier AI companies

Sponsored Whitepapers

Are Australian organisations as cyber-ready as they think?
Are Australian organisations as cyber-ready as they think?
Are New Zealand organisations as cyber-ready as they think?
Are New Zealand organisations as cyber-ready as they think?
From visibility to execution:  Fixing the SaaS management gap
From visibility to execution: Fixing the SaaS management gap
When cyber risk has no clear owner: A practical guide for senior Australian business leaders
When cyber risk has no clear owner: A practical guide for senior Australian business leaders
Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • Forrester's AI Forum Sydney Forrester's AI Forum Sydney
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Kmart Group to expand RFID tagging to more products and to Target

Kmart Group to expand RFID tagging to more products and to Target

Federal Parliamentary Computer Network set for its "most significant" upgrade

Federal Parliamentary Computer Network set for its "most significant" upgrade

WA man jailed for at least five years for evil twin attack

WA man jailed for at least five years for evil twin attack

Optus fast-tracks network operations insourcing from Nokia

Optus fast-tracks network operations insourcing from Nokia

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.