Bypass Windows 11 ESXI Install Error For Lab Testing Purposes
Cisco 9800 Wireless 2024 – Phase 12 – Central Web Authentication (CWA) With Cisco ISE – Part 2
Part 1 can be found here. Foreign WLC Configuration: Create a REDIRECT ACL Define the Cisco ISE RADIUS Server Note: […]
Cisco 9800 Wireless 2024 – Phase 12 – Central Web Authentication (CWA) With Cisco ISE – Part 1
Open the following ports on the firewall to allow communication between the Foreign (internal) and anchor (DMZ) controllers: For optional […]
Cisco 9800 Wireless 2024 – Phase 11 – Version 17.12.02 Bulk Bulk AP Provisioning
Version 17.12.02 makes it easier to provision APs with primary, secondary, and tertiary controllers.
Cisco 9800 Wireless 2024 – Phase 10 – Upgrading to 17.12.2
Before you begin Clean up the old installation files Copy the new image to flash Verify that the file was […]
Cisco 9800 Wireless 2024 – Phase 9 -FlexConnect Logic & Testing
Testing and verification are based on the following basic configuration found here. Verification of VLANs & VLAN IDs Verification of […]
Cisco 9800 Wireless 2024 – Phase 8 – WLC and AP (Local/Flex) Redundancy Planning – Part 2
Basic Connectivity Configuration. The configuration workflow is as follows Create a PSK WLAN to test basic connectivity Create the Policy […]
Cisco 9800 Wireless 2024 – Phase 8 – WLC and AP (Local/Flex) Redundancy Planning – Part 1
Cisco 9800 VPC on Nexus Cisco 9800 HA on 17.X Cisco 9800-CL HA Configuring a highly available wireless network requires […]
Cisco 9800 Wireless 2024 – Phase 7 – AP Authorization List
Security Requirements: All Cisco access points must be authorized locally to join the Cisco 9800 WLC. Background Information To authorize […]
Cisco 9800 Wireless 2024 – Phase 6 – CLI Login Banners
Note: When HTTP authentication is configured using TACACS+/RADIUS, the banner message does not display on the Web UI. The login […]
Cisco 9800 Wireless 2024 – Phase 5 – Creating and Installing Certificates With SAN
Problem Resolution Retrieve the CA in base64 format Right click on the .cer file and open with a text editor […]
Cisco 9800 Wireless 2024 – Phase 4 – DNS & TACACS+ Device Admin
Add DNS entries for the Cisco 9800 Controllers Add the Cisco 9800 Controllers to Cisco ISE Configure the ISE TACACS+ […]
Cisco 9800 Wireless 2024 – Phase 3 LA Local
West Coast LA Local See the steps on configuring HA here Verify that the WLC pair is in HA By […]
Cisco 9800 Wireless 2024 – Phase 2 East Coast Basic Config
Goal: Configure the core WLAN infrastructure (West and East Coast) Verify IP reachability between West and East WLCs
Cisco 9800 Wireless 2024 – Phase 1 West Coast Basic Config
Goal: Configure the core WLAN infrastructure (West and East Coast) West Coast Data Center 1 Note: The East Coast Dater […]
Part 2 – Aruba Airwave Failover Logic
Part 1 Testing the Failback After the failover server fails over and becomes the primary, test the failback functionality. These […]
Part 1 – Aruba Airwave Failover Logic
Part 2 About the Failover Server The failover server communicates with the watched AirWave servers using SSH, SNMP, and AMON […]
Cisco 9800 Certificates “Off the box”
“On box” Create the CSR Create a folder with the name of the device Create the OpenSSL .cnf file Update […]
Cisco 9800 Certificates “On the box”.
“Off box” ssh into the WLC Retrieve the CA in base64 format Right-click on the .cer file and open it […]
Cisco TACACS Base Config
R1, R4 and CORE-SWITCH ISE Config System > Deployment > Edit the ISE node 2. Add the network devices 3. […]
Aruba WLC With Cisco ISE 3.2.0.542 Registered Guest Captive Portal Logic
Proof of concept – Cisco Captive Portal via an Aruba Mobility Controller. The wireless LAN controllers are “firewalled” and can […]
TCP Basics Part 2
TCP Startup Connection Process Step #1 Step # 2 Step # 3 Computer_X acknowledges receipt of WebServer_X’s sequence number and […]
ARP
ARP stands for Address Resolution Protocol. It is a communication protocol used in computer networks to map an IP address […]
ACMP, Aruba Campus Access – Building Blocks – Terminology
High-Level Groups and Profiles AP Groups An Example AP group and the associated profiles. WLAN Profile > Virtual AP AP […]
ACMP, Aruba Campus Access – Building Blocks – Policy Enforcement Firewall – # 2
Part 1 Destination Alias Example Destination Aliases A quick note about positioning. Example: Look at the original rule and start […]
ACMP, Aruba Campus Access – Building Blocks – Policy Enforcement Firewall – # 1
Part 2 Aruba’s configuration can be a bit confusing at times. The focus of the Aruba Campus Access Fundamentals, Implementing […]
EIGRP Basic Config
R5 R1 R2 R3 R4 Verification
DMVPN – Phase 3
High-Level Operations Summary Wireshark Verification All 4 (Spoke) routers sent an NHRP Registration Request to R5 (Hub), who responded with […]
DMVPN Notes – Phase 2 Dynamic Mappings
Configuration and Behavior Between R5 and R1 R1 (Spoke) sends an NHRP Request to R5 (Hub) R5 (Hub) Responds with […]
DMVPN Notes – Phase 2 Static Mappings
DMVPN Phase 2 with static mapping restrictions: R5 Hub R1 R2 R3 R4 Verification of mappings R1, R2, R3 and […]
DMVPN Notes – Phase 1 Dynamic Mappings
Dynamic mappings allow for a much more scalable configuration. How does this work? R5 HUB R1 Spoke R2 Spoke R3 […]
OSPF Network Types
Network Type DB/BDR Hello TypeUnicast/Multicast Hello/Dead/WaitIntervals Point-to-Point NO Multicast 10/40/40 Point-to-Multipoint NO Multicast 30/120/120 Point-to-Multipoint Non-broadcast NO Unicast 30/120/120 Broadcast […]
OSPF Basic Configuration Deep Dive – Part 1
Building OSPF Adjacencies Down This is the first OSPF neighbor state. It means that no information (hellos) has been received […]
OSPF Notes Basics – Part 2
Part 1 Link State Advertisements (LSAs) OSPF Header The major fields of the OSPF packet header are as follows: Identifying […]
OSPF Notes Basics – Part 1
Part 2 Forming OSPF Adjacencies Must match items: Must be unique items: OSPF Network Types Broadcast DR/BDR Election There is […]
DMVPN Notes – Phase 1 Static Mappings
EVE-NG topology DMVPN combines mGRE, the Next-Hop Resolution Protocol (NHRP), and optional IPSec. DMVPN can be implemented as Phase 1, […]
VLSM – Review – Example
VLSM table Major Network = 10.15.0.0/22 11111111.11111111.11111100.00000000 Number of networks = 2^ 6 = 64 Network Address Usable Host Range […]
OSI Model High-Level Review
The OSI (Open Systems Interconnection) model is a conceptual framework that standardizes the functions of a communication system or network […]
TCP Basics Part 1
TCP Header
DHCP
DHCP stands for Dynamic Host Configuration Protocol. It’s a network protocol used to automatically assign IP addresses and other network […]
Traceroute
Traceroute from PC1 (192.168.13.2) to PC2 (192.168.62.2) Note to self: The process repeats for each router in the path. Even […]
R&S Study Labs – VTP
VTP Modes You can configure a switch to operate in any one of these VTP modes: VTP Version 1 VTP […]
VLSM – Review
Example Exponent Number of Hosts * -2 Notation Bits Subnet Mask 2^1 2 /31 11111111.11111111.11111111.11111110 255.255.255.254 2^2 4 /30 11111111.11111111.11111111.11111100 […]
ARUBA ACMP LAB SETUP – 1
Wireless pentest lab Part 6 – Remote Packet Capture
Wireless remote packet capture refers to the process of capturing network traffic on a remote device or network using a […]
Wireless pentest lab Part 5 – Extracting Certificate Info
Disclaimer for Wireless Penetration Testing Educational Purposes: The wireless penetration testing educational service provided here is solely for the purpose […]
WI-FI 6 Notes – Trigger Frames
Trigger Frame The trigger frame is a control frame of the MAC header, which contains the association IDs (AIDs) of […]
Wireless pentest lab Part 4 – PEAP Relay Attacks with wpa_sycophant
The article that covers the details of the attack can be found here and here. Launch the rogue AP Start […]
Wireless pentest lab Part 3
Part 1 Part 2 hostapd-wpe Download the files Creating certs Copy and edit the hostapd-wpe config file Execute the script […]
Wireless pentest lab Part 2
Part 1 Part 3 berate-ap OR Test berate_ap Testing hostapd-mana Create certificates: Documentation can be found here Create a certificate […]
Wireless pentest lab Part 1
Part 2 Part 3 Reference and credit: https://w1f1.net/ Tools: screen Linux screen is a command-line utility that allows you to […]
PEAP EAP-MSCHAPV2 Attack
References: EVP_RSA_gen() generates a new RSA key pair with modulus size bits. Create a certificate signing request. Create the hostapd.eap_user […]
Kali Linux – Rogue SSIDs Part 1 PSK
Wireless Penetration Test and Training Purposes Disclaimer: The training material and exercises provided are for educational and training purposes only. […]
ALFA AWUS036AXML – (802.11ax) 2×2 6 GHz
AWUS036AXML is the WiFi 6/6E (802.11ax) 2×2 6 GHz and Bluetooth 5.2 high-performance USB adapter. It comes with a 2-in-1 USB-C […]
Kali Linux Wireless Pentesting Notes
By default, Kali is set to global regulatory domain (00). To change or set the regulatory domain, run iw reg […]
WIFOO Revisited – Part 2 – WEP
Part 1 Create the wireless monitor interface(s). 2. Recon and gather info using any of the monitor mode interfaces. Take […]
WIFOO Revisited – Part 1 – 6GHz Adapter Test
Part 2 Check the status of the adapter/driver The recon data will be saved in .csv format. This is useful […]
6GHz Baseline Test
This is a high-level document where I try to understand how different devices will transfer data and at what data […]
6GHz Basics – Scanning and Probing in the 6 GHz band
Passive Scanning – With 1200 MHz to cover and 59 channels to scan, a station with a dwell time of […]
WIFI 6E Basics Notes
Reference: https://www.wi-fi.org/news-events/newsroom/wi-fi-alliance-delivers-wi-fi-6e-certification-program An overview of WPA 3 can be found here wlan virtual-ap “WIFI6E”aaa-profile “WIFI6E_AAA_PROFILE”vlan 12ssid-profile “WIFI6E_SSID_PROFILE”allowed-band noneallowed-band-6ghz Security Wi-Fi […]
Wi-Fi 6E Notes Part 1 – IAP 655
Channels Image Reference: www.juniper.net show arm-channels show ap bss-table show ap arm neighbors Basic Packet Capture from the IAP pcap […]
ACMP – Convert IAP to Campus
Whitelist the IAP on the Mobility Conductor Obtain the Ethernet MAC address of the IAP from the GUI/sticker on the […]
ACMP – ArubaOS 8 and AOS-CX Release Descriptions
Reference: https://www.arubanetworks.com/support-services/end-of-life/arubaos-software-release/
ACMP – Exam Notes – Introduction to Clusters – Part 1
What is clustering? A cluster combines multiple managed devices to provide high availability for all clients. Benefits include seamless roaming […]
Review: 802.1X EAP-TLS Authentication Flow Explained – With Packet Captures
Steps 1,2 and 3 – Establish layer one and two The wireless client associates with the AP and seSupplicantional EAPOL […]
Aruba Certified Mobility Associate (ACMA) – Notes
Model AP Client Type Firewall Capacity POE Ports 7005 16 1,024 Physical 2 Gbps N/A 7008 16 1,024 Physical 2 […]
Generate HTTPS Certificate for Aruba WLC
In cryptography, PKCS #12 defines an archive file format for storing many cryptographic objects as a single file. It is […]
WPA3 Downgrade attack
WLAN configured for WPA3 SAE with backward compatibility Confirmation via airodump-ng Confirmation via Wireshark The client connected after going through […]
WPA_SUPPLICANT – MULTI CONFIG
PEAP MSCHAPV2 network={ssid=”LAB-PEAP“scan_ssid=1key_mgmt=WPA-EAPeap=PEAPidentity=”jack”password=”black”phase1=”peaplabel=0″phase2=”auth=MSCHAPV2″} TTLS-PAP network={ssid=”LAB-PAP-TTLS“scan_ssid=1key_mgmt=WPA-EAPeap=TTLSidentity=”jack”anonymous_identity=”anon”password=”black”phase2=”auth=PAP”} TTLS-CHAP network={ssid=”LAB-CHAP-TTLS“scan_ssid=1key_mgmt=WPA-EAPeap=TTLSidentity=”jack”anonymous_identity=”anon”password=”black”phase2=”auth=CHAP”} TTLS-MSCHAPv2 network={ssid=”LAB-TTLS-MSCHAPv2″scan_ssid=1key_mgmt=WPA-EAPeap=TTLSidentity=”jack”anonymous_identity=”anon”password=”black”phase2=”auth=MSCHAPV2″}
WPA_SUPPLICANT – SIMPLE PSK CLIENT
network={ssid=”TEST”scan_ssid=1key_mgmt=WPA-PSKpsk=”password12345″} wpa_supplicant -Dnl80211 -iwlan0 -c/etc/wpa_supplicant.conf
HOSTAPD – WPA/WPA2 CONFIG
interface=wlan1driver=nl80211ssid=BLACKhw_mode=gchannel=11macaddr_acl=0ignore_broadcast_ssid=0auth_algs=1wpa=2wpa_passphrase=LETMEINwpa_key_mgmt=WPA-PSKwpa_pairwise=TKIPwpa_group_rekey=86400ieee80211n=1wme_enabled=1 bss=wlan1_0driver=nl80211ssid=WHITEhw_mode=gchannel=11macaddr_acl=0ignore_broadcast_ssid=0auth_algs=1wpa=2wpa_passphrase=LETMEINwpa_key_mgmt=WPA-PSKwpa_pairwise=TKIPwpa_group_rekey=86400ieee80211n=1wme_enabled=1
HOSTAPD – WEP CONFIG
Use hostapd to create multiple SSIDs on a single wireless adapter interface=wlan1hw_mode=gchannel=6driver=nl80211ssid=APPLEauth_algs=1wep_default_key=0wep_key0=”10101″ bss=wlan0_1 hw_mode=g channel=6 driver=nl80211 ssid=PEAR auth_algs=1 wep_default_key=0 wep_key0=”10101″
Ventev Warehouse Antenna mounts for the – M6130130MP1D0006W and M6060060P1D43620M
Ventev colocation mounts with Aruba AP-534 Ventev Antenna Option # 1 For Open Warehouse Areas – part # – 220125 […]
Wireless Network Design using Ekahau Pro Part 1 – Office Space
Wireless designs come with a plethora of nuances, specifically around requirements and past experiences. You can look at a floor […]
metasploit Windows 7 – windows/smb/ms17_010_eternalblue)
Use auxiliary for smb service Set options to target host Scan target Use ms17_010_eternalblue module exploit Victim desktop Change directory […]
Cisco 9130 Cheat Sheet
2.4 GHz 1 – 23 – 200 mW2 – 20 – 100 mW3 – 17 – 050 mW4 – 14 […]
4-way handshake review – High Level
Reference: 802.11-2016 – Section – 12.7.6 4-way handshake Key 1- sent from the authenticator to the supplicant Key 2- sent […]
Cisco 9800 with ISE Central Web Authentication
Define the AAA server and server group. I normally define the Radius server on both Anchor and Foreign controllers just […]
Cisco 9800 Open SSID – MAC Filter via AAA
Add AAA server to WLC Add the WLC to the AAA server Create a radius server group Create an AAA […]
Cisco 9800 Equivalent of AireOS webpass through – notes
This lab will demonstrate how to configure a simple web passthrough on the IOS XE 9800 Controller AireOS web passthrough […]
CCIE Enterprise Core – ENCOR 350-401 – Network Device Communication – Packet Routing
Verify the ARP table of each device PC1 R4 R6 PC2 The primary function of a network is to provide […]
Cisco 9800 Flexconnect QoS – WIFI CALLING – Part 2
First and foremost read this …. https://tools.ietf.org/id/draft-ietf-tsvwg-ieee-802-11-05.html. Then this … https://tools.ietf.org/html/rfc4594 wireless packet capture with omnipeek /wireshark / SSID open […]
Cisco 9800 Flexconnect QoS – WIFI CALLING – Part 1
First and foremost read this …. https://tools.ietf.org/id/draft-ietf-tsvwg-ieee-802-11-05.html. Then this … https://tools.ietf.org/html/rfc4594 wireless packet capture with omnipeek /wireshark / SSID open […]
Cisco 9800 (17.1)HA via Nexus 9K vPC
Nexus Config – 9K1 vlan 1,10,20vlan 10name NETWORK_MGMTvlan 20name WLAN_MGMT spanning-tree vlan 1-3967 priority 24576vrf context managementvpc domain 1peer-keepalive destination […]
Cisco 9800 High Availability on IOS XE 17.x – notes
Information About High Availability High Availability (HA) allows you to reduce the downtime of wireless networks that occurs due to […]
Slowly working my way through INE’s CCIE R&S workbook
Eve-ng Physical Topology
Spanning-tree Communication – Bridge Protocol Data Units (BPDU)
Because STP is involved in loop detection, many people refer to the catastrophic loops as “Spanning Tree loops.” This is […]
Spanning Tree Basics – Part 3
Spanning-tree from the view point of DL-1 and DL2 The interface associated to lowest path cost is more preferred. The […]
Spanning Tree Basics – Part 2 – The STP root
In part one we looked at the simplest spanning tree decision that a switch can make when it has a […]
Spanning Tree Basics – Part 1
Locating Root Ports After the switches have identified the root bridge, they must determine their root port (RP). The root […]
Quality of Service (QoS) on Catalyst 9800 Controller – Basics (rough notes place holder)
Define class maps Class Map match-any DROP-NETFLIX1_AVC_UI_CLASS (id 39) Description: DROP-NETFLIX1_AVC_UI_CLASS UI_policy_DO_NOT_CHANGE Match protocol netflix Class Map match-any DROP-NETFLIX2_AVC_UI_CLASS (id […]
Infrastructure MFP – Part 1
Management frame protection (MFP) provides security for the otherwise unprotected and unencrypted 802.11 management messages passed between access points and […]
802.11 Deauth frames – type: management
4.5.4.3 Deauthentication reference – 802.11-2016 – page 223 The deauthentication service is invoked when an existing Open System, Shared Key, […]
802.11i / Robust Security Network/ 12.6.2 RSNA selection – part 1
reference 802.11-2016 – page STA = station RSNA – Robust Security Network Association A STA prepared to establish RSNAs shall […]
WPA3 Enterprise/Personal – RSN
WPA3-Personal WPA3-Personal brings better protections to individual users by providing more robust password-based authentication, even when users choose passwords that […]
Upgrading Cisco 9800 Controllers
Be sure to complete the following prerequisites before upgrading the Cisco IOS XE version of the controller software image: Compatibility […]
Ubuntu 19 wpa_supplicant – WPA3 OWE video
video upload test Enhanced open using Ubuntu and wpa_supplicant lab@Crazy4840afkee:/etc/wpa_supplicant$ more owe_script.conf network={ ssid=”OWE13″ key_mgmt=OWE pairwise=CCMP scan_ssid=1 ieee80211w=2 } use […]
WPA3 Opportunistic Wireless Encryption – frame format – Basics
New Wi-Fi Enhanced Open™ technology infuses no-hassle advanced cryptography for open networks We’ve all come to expect fast, reliable, and […]
Cisco 9800 TACACS+ Config CLI and verify – notes
Define the TACACS+ source interface. The source interface is usually the management interface. ip tacacs source-interface VlanX 2. Enable aaa […]
Join Autonomous AP to Cisco Controller
1. Download recovery code from Cisco.com 2. Copy file from server to autonomous AP AP will reboot and join the […]
CCIE Enterprise Wireless (v1.0) – 3.9 Controller Mobility – C9800 Radio Resource Management – Part 2
How RF Groups are formed When the WLC initializes as new, it creates a unique Group ID using the IP […]
CCIE Enterprise Wireless (v1.0) – 3.9 Controller Mobility – C9800 Radio Resource Management – Part 1
The C9800 Product line is designed as a direct replacement for Current Hardware Wireless Lan Controller platforms. C9800 is compatible […]
2020 – Give thanks to the most high
Blessings, love , righteousness, tolerance, acceptance and forgiveness. For the LORD is good; his mercy is everlasting; and his truth […]
Just As Good…
Managed Devices upgrade via Mobility Master – 8.5
Configure sever parameters – server IP, protocol, file location , file name. Select the cluster of devices to be upgraded. […]
Upgrade Mobility master HA Pair – 8.x
Download the desired version from Aruba’s website. Once the code is downloaded verify the checksum using the Linux md5sum command […]
Clustering of Mobility Controllers – 8.x
Clustering is a new feature introduced in AOS 8.x MM – Mobility Master MC – Mobility Controller VMC – Virtual […]
CCIE Enterprise Wireless (v1.0) – 3.9 Controller Mobility – 3.9.e Mobility anchoring aka Mobility Tunnels
Note: CCIE Enterprise Wireless (v1.0) – 3.9 Controller Mobility – 3.9.e Mobility anchoring On any firewall between the guest anchor […]
CCIE Enterprise Wireless (v1.0) – section 3.3 – a – Cisco 9800 Cloud Controller High Availability ( HA ) /SSO
Restrictions Prior to enabling HA between two 9800 WLCs ensure these you perform these validations: Both devices must be of […]
ArubaOS 8.X – configure communication between mobility master and managed devices (MD)/controllers
The Aruba mobility master structure is configured via folder hierarchy starting at the “managed device” level The two options are […]
Aruba 8.4.0 Mobility Master install with redundancy
TOPOLOGY Boot and configure basic settings: ports, up link VLAN, username and password Configure VRRP on the primary and secondary […]
Install Cisco 9800 Cloud Controller on ESXI 6.7
Download the recommended controller version from Cisco.com – as of 12/18/2019 the recommended version is listed below as Gibraltar-16.12.1s ED […]
Cisco Cloud 9800 – Mobility Tunnel ( between two 9800 cloud controllers)
Cisco 9800 cloud Basic Install – zero day wireless CLI
Disable the wireless network to configure the country code: C9800(config)#ap dot11 5ghz shutdown Disabling the 802.11a network may strand mesh […]
802.11 PHY Layer – Carrier Sense/Clear Channel Assessment (CS/CCA)
Carrier Sense/Clear Channel Assessment (CS/CCA) If the station is not currently transmitting or receiving, it listens and senses the channel […]
802.11 Frames
Management Frames 802.11 management frames make up a majority of the frame types in a WLAN. Management frames are used […]