Re: [93attendees] "ietf - The wireless network appears to have been compromised and will be disabled for about a minute."

Daniel Harkins <dharkins@arubanetworks.com> Mon, 20 July 2015 12:10 UTC

Return-Path: <dharkins@arubanetworks.com>
X-Original-To: 93attendees@ietfa.amsl.com
Delivered-To: 93attendees@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 67A0C1A1F70 for <93attendees@ietfa.amsl.com>; Mon, 20 Jul 2015 05:10:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.61
X-Spam-Level:
X-Spam-Status: No, score=-2.61 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2RanP8WKQa0O for <93attendees@ietfa.amsl.com>; Mon, 20 Jul 2015 05:10:54 -0700 (PDT)
Received: from mx01.arubanetworks.com (mx01.arubanetworks.com [104.36.248.59]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D67B71A1B89 for <93attendees@ietf.org>; Mon, 20 Jul 2015 05:10:54 -0700 (PDT)
X-ASG-Debug-ID: 1437394253-03d1245ef65e31f0001-Sm57G0
Received: from sjc-exch10hc-02.arubanetworks.com ([10.1.8.46]) by mx01.arubanetworks.com with ESMTP id CDiasuC9rw5UCI1x (version=TLSv1 cipher=AES128-SHA bits=128 verify=NO); Mon, 20 Jul 2015 05:10:53 -0700 (PDT)
X-Barracuda-Envelope-From: dharkins@arubanetworks.com
Received: from shasta.arubanetworks.com ([fe80::1053:3055:eabc:ceb9]) by sjc-exch10hc-02.arubanetworks.com ([fe80::88ce:11e3:e0a3:1489%16]) with mapi id 14.03.0158.001; Mon, 20 Jul 2015 05:10:53 -0700
From: Daniel Harkins <dharkins@arubanetworks.com>
To: Jim Martin <jrmii@isc.org>, Ross Finlayson <finlayson@live555.com>
Thread-Topic: [93attendees] "ietf - The wireless network appears to have been compromised and will be disabled for about a minute."
X-ASG-Orig-Subj: Re: [93attendees] "ietf - The wireless network appears to have been compromised and will be disabled for about a minute."
Thread-Index: AQHQwuC9YKDR9xzspEigRgrChjjQBZ3ksaEA//+S2IA=
Date: Mon, 20 Jul 2015 12:10:52 +0000
Message-ID: <D1D232CA.1EE8F%dharkins@arubanetworks.com>
References: <1E0A8B96-3E39-4C47-8F14-FC97EAF93D21@live555.com> <B7856BB5-7326-4D37-B68F-53BB70AD450D@isc.org>
In-Reply-To: <B7856BB5-7326-4D37-B68F-53BB70AD450D@isc.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.5.2.150604
x-originating-ip: [31.133.180.152]
Content-Type: multipart/alternative; boundary="_000_D1D232CA1EE8Fdharkinsarubanetworkscom_"
MIME-Version: 1.0
X-Barracuda-Connect: UNKNOWN[10.1.8.46]
X-Barracuda-Start-Time: 1437394253
X-Barracuda-Encrypted: AES128-SHA
X-Barracuda-URL: https://mx01.arubanetworks.com:443/cgi-mod/mark.cgi
X-Virus-Scanned: by bsmtpd at arubanetworks.com
X-Barracuda-BRTS-Status: 1
X-Barracuda-Spam-Score: 0.00
X-Barracuda-Spam-Status: No, SCORE=0.00 using global scores of TAG_LEVEL=1000.0 QUARANTINE_LEVEL=1000.0 KILL_LEVEL=7.0 tests=HTML_MESSAGE
X-Barracuda-Spam-Report: Code version 3.2, rules version 3.2.3.20904 Rule breakdown below pts rule name description ---- ---------------------- -------------------------------------------------- 0.00 HTML_MESSAGE BODY: HTML included in message
Archived-At: <http://mailarchive.ietf.org/arch/msg/93attendees/RGpuPniouQxz3ysWDIna0ANjeQw>
Cc: "93attendees@ietf.org" <93attendees@ietf.org>
Subject: Re: [93attendees] "ietf - The wireless network appears to have been compromised and will be disabled for about a minute."
X-BeenThere: 93attendees@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Mailing list of IETF 93 attendees that have opted in on this list. " <93attendees.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/93attendees>, <mailto:93attendees-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/93attendees/>
List-Post: <mailto:93attendees@ietf.org>
List-Help: <mailto:93attendees-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/93attendees>, <mailto:93attendees-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 20 Jul 2015 12:10:56 -0000

  Hi Jim,

  TKIP was designed to have a shelf-life of 5 years and that passed 2 years ago.
It’s been deprecated by 802.11 and should not be used on any network anymore.

  regards,

  Dan.

On 7/20/15, 4:41 AM, "93attendees on behalf of Jim Martin" <93attendees-bounces@ietf.org<mailto:93attendees-bounces@ietf.org> on behalf of jrmii@isc.org<mailto:jrmii@isc.org>> wrote:

Ross,
I can answer for the masses. Yes! It’s an issue related to the TKIP MIC on the encrypted SSIDs. We’re in the process of updating the AP configurations to force folks to AES, which is expected to resolve the issue. Please give us a few minutes to roll out the change.

- Jim


On Jul 20, 2015, at 1:39 PM, Ross Finlayson <finlayson@live555.com<mailto:finlayson@live555.com>> wrote:
Whenever I connect to the “ietf” wireless network (with username,password “ietf”) I frequently get a popup window (on a Macbook Pro running OS X 10.10.4) saying:
ietf
The wireless network appears to have been compromised and will be disabled for about a minute
Is anyone else seeing these popups?  Should we care?
Ross.
_______________________________________________
93attendees mailing list
93attendees@ietf.org<mailto:93attendees@ietf.org>
https://www.ietf.org/mailman/listinfo/93attendees