There is more to the recent Cisco Wireless OTAP issue that isn’t being widely reported.
In the last week you heard about the OTAP issue. OTAP stands for Over The Air Provisioning. It is a means whereby a Cisco access point can find a Cisco controller to initiate a join process.
OTAP when enable, by design , sends the controller mac and ip information in the clear every 60 seconds in the multicast RRM packet. This aids access points to join the network.
Cisco recommends you disable OTAP during normal production. OTAP should only be deployed during the deployment phase of a wireless network.
What isn’t being reported, when disabled the RRM packets still includes the controller mac and ip address!
Enjoy the video
http://www.my80211.com/security-labs/2009/9/5/there-is-more-to-the-recent-cisco-wireless-otap-issue-that-i.html
Reader Comments