Bug 697605 - NetworkManager chooses the wrong setting for an SSID
Summary: NetworkManager chooses the wrong setting for an SSID
Keywords:
Status: CLOSED WONTFIX
Alias: None
Product: Fedora
Classification: Fedora
Component: NetworkManager
Version: 15
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
Assignee: Dan Williams
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2011-04-18 18:11 UTC by cam
Modified: 2012-08-07 15:58 UTC (History)
2 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2012-08-07 15:57:58 UTC
Type: ---


Attachments (Terms of Use)

Description cam 2011-04-18 18:11:27 UTC
Description of problem:
It looks like NM can choose the wrong credentials to use when connecting to a wireless network in some cases.

In my network I have an access point which has been configured as unsecured. NM learns the SSID and the fact that it can connect without a password. Then the access point was reconfigured and a password was required. After this point NM maintains two entries in its list of known networks. On booting the first one (unsecured) is chosen for the SSID, which is unchanged. This fails to connect and NM doesn't know to try another one.

To its credit, NM presents a list of two entries for the SSID, however they look the same. Also, it seems it's not possible to edit the list or delete an entry (I will raise this as a separate BZ)

Version-Release number of selected component (if applicable):
NetworkManager-0.8.998-2.git20110406.fc15.i686

How reproducible:
100%

Steps to Reproduce:
1. configure AP as unsecured and connect with NM.
2. reconfigure AP with WPA PSK and connect with NM.
3. reboot and try to connect with NM
  
Actual results:
Network connection is no longer made automatically. Furthermore there may be potential for DOS or worse if NM is allowed to choose or learn an unsecured similar SSID to an existing one that is secured.

Expected results:

Ideally NM would warn before allowing users to choose an unsecured network that looks like a previously known secured one, as this may be an attack.

I would suggest that a sane network environment would not mix secured and unsecured networks with the same SSID / lower layer address details, therefore there should be only one setting remembered for each of these.

Additional info:

Comment 1 Tomasz 2011-05-28 19:42:15 UTC
The issue works in the other direction, too, but with a twist. If initially you connect to a secured network and then reconfigure the AP to be unsecured you may sometimes be prompted for credentials to log onto the unsecured AP. This has only happened to me a handful of times, but the issue is still there.

Comment 2 Fedora End Of Life 2012-08-07 15:58:00 UTC
This message is a notice that Fedora 15 is now at end of life. Fedora
has stopped maintaining and issuing updates for Fedora 15. It is
Fedora's policy to close all bug reports from releases that are no
longer maintained. At this time, all open bugs with a Fedora 'version'
of '15' have been closed as WONTFIX.

(Please note: Our normal process is to give advanced warning of this
occurring, but we forgot to do that. A thousand apologies.)

Package Maintainer: If you wish for this bug to remain open because you
plan to fix it in a currently maintained version, feel free to reopen
this bug and simply change the 'version' to a later Fedora version.

Bug Reporter: Thank you for reporting this issue and we are sorry that
we were unable to fix it before Fedora 15 reached end of life. If you
would still like to see this bug fixed and are able to reproduce it
against a later version of Fedora, you are encouraged to click on
"Clone This Bug" (top right of this page) and open it against that
version of Fedora.

Although we aim to fix as many bugs as possible during every release's
lifetime, sometimes those efforts are overtaken by events. Often a
more recent Fedora release includes newer upstream software that fixes
bugs or makes them obsolete.

The process we are following is described here:
http://fedoraproject.org/wiki/BugZappers/HouseKeeping


Note You need to log in before you can comment on or make changes to this bug.