Re: Apple devices spoofing default gateway?

2019-06-10 Thread www boy
Good day Matt, We have a combination of IAP-135 and IAP-125's , we are running a older firmware (yeah i know it needs updating something for next month or so) Worst luck I couldnt work out how to modify local arp caches on the access points. I have just enabled "Deny inter user bridging" and tha

Re: Apple devices spoofing default gateway?

2019-06-07 Thread Matt Freitag
For those of us with Aruba wireless, www boy, could you share some more info about your setup/code version/configuration/specific APs/controller model(s)/etc? Matt Freitag Network Engineer Michigan Tech IT Michigan Technological University We can help. mtu.edu/it (906) 487- On Fri, Jun 7, 2

Re: Apple devices spoofing default gateway?

2019-06-07 Thread William Herrin
On Fri, Jun 7, 2019 at 6:14 AM www boy wrote: > I just joined nanog to allow me to respond to a thread that Simon posted in March. . > (Not sure if this is how to respond) > > We have the exact same problem with Aruba Access points and with multiple MacBooks and a iMac. > Where the device will spo

Re: Apple devices spoofing default gateway?

2019-06-07 Thread Owen DeLong
This is a less than helpful feature in a lot of situations… e.g. I was attempting to work on an IOT device and test OTA firmware updates in a Hotel a little while ago. The client isolation on the wifi network resulted in non-obvious failures that took some time to identify. In general, people

Re: Apple devices spoofing default gateway?

2019-06-07 Thread Matt Hoppes
Turn on client isolation on the access points? > On Jun 7, 2019, at 3:00 PM, Hugo Slabbert wrote: > > >> On Fri 2019-Jun-07 16:21:29 +1000, www boy wrote: >> >> I just joined nanog to allow me to respond to a thread that Simon posted in >> March. . >> (Not sure if this is how to respond) >>

Re: Apple devices spoofing default gateway?

2019-06-07 Thread Hugo Slabbert
On Fri 2019-Jun-07 16:21:29 +1000, www boy wrote: I just joined nanog to allow me to respond to a thread that Simon posted in March. . (Not sure if this is how to respond) We have the exact same problem with Aruba Access points and with multiple MacBooks and a iMac. Where the device will spoo

Re: Apple devices spoofing default gateway?

2019-06-07 Thread www boy
I just joined nanog to allow me to respond to a thread that Simon posted in March. . (Not sure if this is how to respond) We have the exact same problem with Aruba Access points and with multiple MacBooks and a iMac. Where the device will spoof the default gateway and the effect is that vlan is no

Re: Apple devices spoofing default gateway?

2019-03-14 Thread Curtis, Bruce
We are running 8.5 and 1815s and I don’t think we are seeing this problem. We do have a very small number of 1810s and did see some strange behavior but it doesn’t seem to match this problem description. Is proxy arp disabled on the default gateway device? That could potentially interact stra

Re: Apple devices spoofing default gateway?

2019-03-14 Thread Simon Lockhart
On Thu Mar 14, 2019 at 04:19:04PM -0500, Jimmy Hess wrote: > Apple's Bonjour protocols include something called Apple Bonjour Sleep Proxy > for Wake on Demand --- When a device goes to sleep, the Proxy that runs on > various Apple devices is supposed to seize all the IP and MAC addresses that > d

Re: Apple devices spoofing default gateway?

2019-03-14 Thread Jimmy Hess
On Thu, Mar 14, 2019 at 7:29 AM Simon Lockhart wrote: > Apple devices, but what's more strange is that we're only seeing it where > those Apple devices are connected to Cisco 1810 and 1815 APs, and where those > APs are connected to a Cisco WLC running v8.5 software. If we downgrade the > WLC to

Re: Apple devices spoofing default gateway?

2019-03-14 Thread J. Hellenthal via NANOG
Right on! https://www.tracewrangler.com/ > On Mar 14, 2019, at 13:13, Mel Beckman wrote: > > You asked if anyone else has seen this. It’s possibly going on in other > networks but nobody is noticing. What symptoms brought the problem to your > attention? > > You can sanitize the packet captu

Re: Apple devices spoofing default gateway?

2019-03-14 Thread Mel Beckman
You asked if anyone else has seen this. It’s possibly going on in other networks but nobody is noticing. What symptoms brought the problem to your attention? You can sanitize the packet captures by limiting them to just the headers. The payloads are likely not useful for troubleshooting anyway,

Re: Apple devices spoofing default gateway?

2019-03-14 Thread Simon Lockhart
On Thu Mar 14, 2019 at 12:53:01PM +, Mel Beckman wrote: > Can you post some packet captures? I have some packet captures, but as they're from a live network, I'd rather not post them publicly. > I was a network engineer on the WiFi network at SFO, for both passengers and > baggage scanners,

Re: Apple devices spoofing default gateway?

2019-03-14 Thread Mel Beckman
Can you post some packet captures? I was a network engineer on the WiFi network at SFO, for both passengers and baggage scanners, with several hundred APs. Several times we were misled by packet captures that seemed to show client traffic causing network problems, such as packet storms, but wh

Apple devices spoofing default gateway?

2019-03-14 Thread Simon Lockhart
All, We're seeing a bit of a weird one on our network at the moment, and wondering if anyone else has seen it. Since Friday we're seeing Apple devices (we believe it's both laptops and iPhones) responding to ARP requests for the default gateway IP with their own MAC address (i.e. ARP spoofing /