{"id":1645,"date":"2019-09-17T09:38:34","date_gmt":"2019-09-17T15:38:34","guid":{"rendered":"https:\/\/ugit.siua.ac.cr\/?p=1645"},"modified":"2019-09-26T11:20:03","modified_gmt":"2019-09-26T17:20:03","slug":"cisco-mac-authentication-bypass","status":"publish","type":"post","link":"https:\/\/sada.services\/?p=1645","title":{"rendered":"CISCO: Mac Authentication Bypass"},"content":{"rendered":"\n<p>Se realizar\u00e1 la configuraci\u00f3n en un switch Catalyst 2960<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Acceso al switch v\u00eda SSH<br>User: ugit<br>Password: AdA3<br>Enable: AA3<\/li><\/ul>\n\n\n\n<ul class=\"wp-block-list\"><li>En modo de configuraci\u00f3n global<\/li><\/ul>\n\n\n\n<pre class=\"wp-block-code\"><code> aaa new model\n aaa authentication dot1x default group radius\n aaa authorization network default group radius\n aaa accounting dot1x default start-stop group radius\n aaa session-id common\n\n dot1x system-auth-control\n #dot1x guest-vlan supplicant                      (no necesario)    \n\n radius-server host 10.20.250.1 auth-port 1812 acct-port 1813 key AAd0<\/code><\/pre>\n\n\n\n<ul class=\"wp-block-list\"><li>Dentro de la interfaz que deseamos usar con MAB (FastEthernet0\/5)<\/li><\/ul>\n\n\n\n<pre class=\"wp-block-code\"><code> switchport mode access\n switchport access vlan 155\n switchport voice vlan 40\n\n authentication event fail retry 3 action authorize vlan 155\n authentication event no-response action authorize vlan 155\n authentication host-mode multi-domian\n authentication order dot1x mab \n authentication priority dot1x mab \n authentication port-control auto\n authentication violation protect\n\n #authentication periodic                      (no necesario)\n #authentication timer restart 7               (no necesario)   \n #authentication timer reauthenticate 900      (no necesario)\n\n mab\n\n spanning-tree portfast\n spanning-tree bpduguard enable<\/code><\/pre>\n\n\n\n<ul class=\"wp-block-list\"><li>Si la configuraci\u00f3n se hace correctamente se muestran los siguiente mensaje al conectar un equipo autorizado<\/li><\/ul>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"786\" height=\"69\" src=\"\/wp-content\/uploads\/2019\/09\/selecci\u00f3n232_1_o.png\" alt=\"\" class=\"wp-image-2241\" srcset=\"https:\/\/sada.services\/wp-content\/uploads\/2019\/09\/selecci\u00f3n232_1_o.png 786w, https:\/\/sada.services\/wp-content\/uploads\/2019\/09\/selecci\u00f3n232_1_o-300x26.png 300w, https:\/\/sada.services\/wp-content\/uploads\/2019\/09\/selecci\u00f3n232_1_o-768x67.png 768w\" sizes=\"(max-width: 786px) 100vw, 786px\" \/><\/figure><\/div>\n\n\n\n<ul class=\"wp-block-list\"><li>Si hay alg\u00fan error en la validaci\u00f3n aparecer\u00e1n los siguientes mensajes<\/li><\/ul>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"802\" height=\"83\" src=\"\/wp-content\/uploads\/2019\/09\/selecci\u00f3n231_1_o-1.png\" alt=\"undefined\" class=\"wp-image-2242\" srcset=\"https:\/\/sada.services\/wp-content\/uploads\/2019\/09\/selecci\u00f3n231_1_o-1.png 802w, https:\/\/sada.services\/wp-content\/uploads\/2019\/09\/selecci\u00f3n231_1_o-1-300x31.png 300w, https:\/\/sada.services\/wp-content\/uploads\/2019\/09\/selecci\u00f3n231_1_o-1-768x79.png 768w\" sizes=\"(max-width: 802px) 100vw, 802px\" \/><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>CISCO: Mac Authentication Bypass<\/p>\n","protected":false},"author":2,"featured_media":2051,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[37],"tags":[38,127],"class_list":["post-1645","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cisco","tag-cisco","tag-mab"],"blocksy_meta":{"styles_descriptor":{"styles":{"desktop":"","tablet":"","mobile":""},"google_fonts":[],"version":6}},"_links":{"self":[{"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/posts\/1645","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/sada.services\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1645"}],"version-history":[{"count":3,"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/posts\/1645\/revisions"}],"predecessor-version":[{"id":2243,"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/posts\/1645\/revisions\/2243"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/sada.services\/index.php?rest_route=\/wp\/v2\/media\/2051"}],"wp:attachment":[{"href":"https:\/\/sada.services\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1645"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sada.services\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1645"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sada.services\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1645"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}