kismet and WG511

This is a discussion on kismet and WG511 within the Linux Security forums, part of the System Security and Security Related category; Hi, I have a Netgear WG511 WLAN card with Prism chipset. The card is runnig fine. Now I'm trying ...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 07-21-2004
Christian Christmann
 
Posts: n/a
Default kismet and WG511

Hi,

I have a Netgear WG511 WLAN card with Prism chipset.
The card is runnig fine. Now I'm trying to run Kismet 2004.04.R.
But the execution of the program fails with this error message:

Will drop privs to XXX (XXX) gid XXX
No specific sources given to be enabled, all will be enabled.
Enabling channel hopping.
Enabling channel splitting.
Source 0 (prism54): Enabling monitor mode for prism54g source interface eth1 channel 6...
Source 0 (prism54): Opening prism54g source interface eth1...
Spawned channelc control process 29444
Dropped privs to paul (1000) gid 1000
Allowing clients to fetch WEP keys.
Logging networks to Kismet-Jul-21-2004-1.network
Logging networks in CSV format to Kismet-Jul-21-2004-1.csv
Logging networks in XML format to Kismet-Jul-21-2004-1.xml
Logging cryptographically weak packets to Kismet-Jul-21-2004-1.weak
Logging cisco product information to Kismet-Jul-21-2004-1.cisco
Logging gps coordinates to Kismet-Jul-21-2004-1.gps
Logging data to Kismet-Jul-21-2004-1.dump
Writing data files to disk every 300 seconds.
Mangling encrypted and fuzzy data packets.
Tracking probe responses and associating probe networks.
Reading AP manufacturer data and defaults from /usr/etc/ap_manuf
Reading client manufacturer data and defaults from /usr/etc/client_manuf
FATAL: Dump file error: Unable to open wtap dump file: Kismet-Jul-21-2004-1.dump (Permission denied)
Sending termination request to channel control child 29444...
Waiting for channel control child 29444 to exit...
WARNING: Error disabling monitor mode: Failed to set channel 0 22:Invalid argument
WARNING: prism54 (eth1) left in an unknown state. You may need to manually
restart or reconfigure it for normal operation.
WARNING: Sometimes cards don't always come out of monitor mode
cleanly. If your card is not fully working, you may need to
restart or reconfigure it for normal operation.
Kismet exiting.

My kismet.conf reads:

version=2004.03.devel.a
servername=Kismet
suiduser=XXX (replaced)
source=prism54g,eth1,prism54
channelhop=true
channelvelocity=5
channelsplit=true
defaultchannels=IEEE80211b:1,6,11,2,7,3,8,4,9,5,10
defaultchannels=IEEE80211g:1,6,11,2,7,3,8,4,9,5,10
defaultchannels=IEEE80211a:36,40,44,48,52,56,60,64
defaultchannels=IEEE80211ab:1,6,11,2,7,3,8,4,9,5,1 0,36,40,44,48,52,56,60,64
tcpport=2501
allowedhosts=127.0.0.1
maxclients=5
gps=true
gpshost=localhost:2947
gpsmodelock=false
alert=NETSTUMBLER,5/min,2
alert=WELLENREITER,5/min,2
alert=LUCENTTEST,5/min,2
alert=DEAUTHFLOOD,5/min,4
alert=BCASTDISCON,5/min,4
alert=CHANCHANGE,5/min,4
alert=AIRJACKSSID,5/min,2
alert=PROBENOJOIN,5/min,2
alert=DISASSOCTRAFFIC,5/min,
allowkeytransmit=true
writeinterval=300
sound=false
soundplay=/usr/bin/play
sound_new=/usr/share/kismet/wav/new_network.wav
sound_traffic=/usr/share/kismet/wav/traffic.wav
sound_junktraffic=/usr/share/kismet/wav/junk_traffic.wav
sound_alert=/usr/share/kismet/wav/alert.wav
speech=false
festival=/usr/bin/festival
speech_typspeech_encrypted=New network detected, s.s.i.d. %s, channel %c, network encrypted.
speech_unencrypted=New network detected, s.s.i.d. %s, channel %c, network open.
ap_manuf=ap_manuf
client_manuf=client_manuf
metric=false
waypoints=false
waypointdata=%h/.gpsdrive/way_kismet.txt
alertbacklog=50
logtypes=dump,network,csv,xml,weak,cisco,gps
trackprobenets=true
noiselog=false
corruptlog=true
beaconlog=true
phylog=true
mangledatalog=true
fuzzycrypt=wtapfile,wlanng,wlanng_legacy,wlanng_av s,hostap,wlanng_wext
dumptype=wiretap
dumplimit=0
logdefault=Kismet
logtemplate=%n-%d-%i.%l
piddir=/var/run/
configdir=%h/.kismet/
ssidmap=ssid_map
groupmap=group_map
ipmap=ip_map

Any hints how to solve this problem?
Thank you
Christian

Reply With Quote
  #2 (permalink)  
Old 07-22-2004
Giles Coochey
 
Posts: n/a
Default Re: kismet and WG511

Christian Christmann wrote:

> Reading client manufacturer data and defaults from /usr/etc/client_manuf
> FATAL: Dump file error: Unable to open wtap dump file:
> Kismet-Jul-21-2004-1.dump (Permission denied) Sending termination request


Woohoo... look - it's trying to create a file and it can't

What user is kismet running under?
Can it create the file in the folder that it wants to?

The answer to the second question is no, the rest is left as an exercise to
the requestor.




Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT +1. The time now is 03:12 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0