Prevent MAC Spoofing?

ExpIsBestTeacher

Reputable
Jul 10, 2014
1
0
4,510
Forgive my ignorance...I'm trying to understand MAC address spoofing in order to prevent it on my home network. Linksys E4200. Standard security...non-broadcast SSID, WPA2 encryption, filtering to only allow specific MAC addresses.

Can someone spoof the MAC address of a wireless device already within my network and gain access or do they need to also know the wireless SSID and WPA2 password?

 
Solution
They need the WPA password.

However, SSID and MAC are not considered to be secure methods of authentication, as both are transmitted in clear at the start of each session (even if you have hidden SSID enabled).

If you want to allow/deny specific devices without having to change the key on everything, 802.1x is your answer. Unfortunately, little consumer gear supports this.
They need the WPA password.

However, SSID and MAC are not considered to be secure methods of authentication, as both are transmitted in clear at the start of each session (even if you have hidden SSID enabled).

If you want to allow/deny specific devices without having to change the key on everything, 802.1x is your answer. Unfortunately, little consumer gear supports this.
 
Solution