Hacker News new | ask | show | jobs
by aselzer 4098 days ago
That's basically the only way to do it. If it were really clever, it could ignore packets based on vendor extensions and device characteristics. They are not that easy to spoof (you would have to modify the driver, as opposed to just changing the MAC).

I actually use this method to use school WiFi anonymously (or rather, as someone else).

3 comments

Mm not entirely - I'd imagine that they could fairly easily run wpa-enterprise, authenticating against Comcast servers. Then when a user tries to connect, they'd be asked for their Comcast creds, which they could type in once, and then be authenticated with on all such servers.

It's how eduroam works, and that works fairly flawlessly (provided the routers have enough bandwidth).

Wi-Fi Alliance released a new standard to solve hotspot roaming called "Passpoint". Time Warner Cable started using it for their hotspot authentication recently (in NYC at least). It works well in my experience.

"Passpoint automates that entire process, enabling a seamless connection between hotspot networks and mobile devices, all while delivering the highest WPA2™ security. Passpoint is enabling a more cellular-like experience when connecting to Wi-Fi networks."

There is a bunch of non-broken (at least in design) client authentication protocols for WiFi. It's rarely used though since it causes problems on most devices and hard to set up (at least on win7 it didn't work for most people on my dorm).