1 |
On Tuesday 03 June 2008, Drew Tomlinson wrote: |
2 |
> Ever since I upgraded my gentoo-sources kernel from 2.6.23 to 2.6.25, I |
3 |
> can no longer see packets on my wireless network for any device other |
4 |
> than my own. The tcpdump output looks like this: |
5 |
> |
6 |
> 20:49:32.909144 00:12:bf:2a:2c:76 (oui Unknown) Unknown SSAP 0x10 > |
7 |
> 00:1f:32:5f:fe:06 (oui Unknown) Unknown DSAP 0xc2 Unnumbered, disc, |
8 |
> Flags [Final], length 44 |
9 |
> 20:49:32.912775 00:12:bf:2a:2c:76 (oui Unknown) Unknown SSAP 0x10 > |
10 |
> 00:1f:32:5f:fe:06 (oui Unknown) Unknown DSAP 0xc2 Information, send seq |
11 |
> 42, rcv seq 0, Flags [Response], length 204 |
12 |
> 20:49:32.916874 00:12:bf:2a:2c:76 (oui Unknown) Unknown SSAP 0x10 > |
13 |
> 00:1f:32:5f:fe:06 (oui Unknown) Unknown DSAP 0xc2 Supervisory, Receiver |
14 |
> not Ready, rcv seq 0, Flags [Response], length 169 |
15 |
> 20:49:32.976738 00:12:bf:2a:2c:76 (oui Unknown) Unknown SSAP 0x10 > |
16 |
> 00:1f:32:5f:fe:06 (oui Unknown) Unknown DSAP 0xc2 Information, send seq |
17 |
> 43, rcv seq 0, Flags [Response], length 64 |
18 |
> 20:49:33.047570 00:12:bf:2a:2c:76 (oui Unknown) > 00:1f:32:5f:fe:06 (oui |
19 |
> Unknown), ethertype Unknown (0x05ec), length 1530: |
20 |
> 0x0000: c211 5700 c393 1b7b 838f 366c 27c5 f97a ..W....{..6l'..z |
21 |
> 0x0010: 5111 7d1a 1e33 bebd a432 ff30 5a35 e0ad Q.}..3...2.0Z5.. |
22 |
> 0x0020: ba16 2b31 f1e9 d905 5967 f333 d3a1 4ba3 ..+1....Yg.3..K. |
23 |
> 0x0030: 1e32 0f18 fcc2 |
24 |
> |
25 |
> I've Googled for an answer and think that my problem is that I am unable |
26 |
> to decrypt WEP packets for any device other than my own. This is a |
27 |
> simple 64 bit WEP network in my home. Unfortunately I did not find |
28 |
> anything that applied to my situation. |
29 |
> |
30 |
> One thing different about my new kernel config is that because I have a |
31 |
> Broadcom card, I moved to the new b43 driver instead of the old |
32 |
> b43_legacy driver. I am using version 4 firmware however I had the same |
33 |
> problem with version 3 firmware. I was hoping that would fix it but no |
34 |
> luck. |
35 |
> |
36 |
> I am also using the new MAC80211 stack instead of the older IEEE80211 |
37 |
> stack. |
38 |
> |
39 |
> Any ideas on what I have done wrong? |
40 |
|
41 |
How do you invoke tcpdump? Are you placing your interface in promiscuous |
42 |
mode? If you iface is 00:12:bf:2a:2c:76 which one is 00:1f:32:5f:fe:06 ? |
43 |
The router? Does setting -s 65535 provide more packet info? |
44 |
-- |
45 |
Regards, |
46 |
Mick |