Tracking Protection In Wi-Fi Networks Coming Soon To Linux
prisoninmate writes: Fedora contributor and NetworkManager developer Lubomir Rintel explains how your devices are being identified on a network by a unique number that most of us know by the name of MAC address. Same goes for mobile networking, as your laptop's or mobile phone's MAC address is, in most cases, broadcasted everywhere you go before you even attempt a connection to a wireless network. And that's a problem for your privacy. The solution? Randomization of the MAC address while scanning for Wi-Fi networks. Apple is already using this method on iOS 8 and later mobile operating systems, and so is Microsoft in Windows 10, so Linux users will ["likely"] get it in the upcoming NetworkManager 1.2 release.
terrorrists... we're all suspects now?
My ancient pocket dino (a Nokia N900) has had this feature for ages. And yes, it runs Linux.
Nae king! Nae laird! Nae yurrupiean pressedent! We willna be fooled again!
Please don't. My company is building tools that help businesses understand their customers through WiFi. We're having to waste a lot of time building heuristics that determine whose MAC switched when they blip off and a new one randomly appears. We're barely off the ground with this stuff, now we're probably going to have to build new heuristics for Android devices.
I will say that the good part of this is the product managers now understand we can't track real people, which was never our intent, but was possible given the long-lived nature of MACs. I just wish they'd randomize in the middle of the night when charging.
What do we gain, what makes it worth our while to let others track us?
what is happend here?
This will mess with DHCP reservation
Also, how can I randomise on Windows?
I think the best way to randomise is to use randomisation on a separate USB dongle if you are conerned, on your private subnets you want a MAC stable for DHCP reservation.
Microsoft have introduced a "feature" that sends WiFi passwords to their servers and then shares them with the friends of people you have trusted, I've locked down my WiFi by turning on MAC address based authentication in hostapd. Random MAC addresses with break this. And no - I'm not going to bow to MS and add " _optout" to my SSID. http://www.theregister.co.uk/2...
Because systemd sucks.
Use ifconfig:
ifconfig eth0 hw ether
Its had this option for years. I presume it'll work for the wlan0 device though I've never tried it.
You know what to do.
1 - Don't connect automatically.
2 - Have a button that generates a random MAC. Don't use it at home.
With this in the news though, they will just move to fingerprinting, which is harder for me to fake. I guess I will start by setting my user strings to say I am Windows XP with Internet Explorer 8 (I am actually Linux and Firefox). By the time they figure out that is not true, I will be gone.
I have always turned off my wifi when not at home (Android and Win Phone/Mobile - plenty of data allowance for my usage patterns on the plans I've had).
Linux users already have this. Systemd users will have it soon. Rehashing previous functionality, selling it as a compelling advantage over what came before.
boo systemd, boo
Just won't work.
Mostly due to java creep in browsers - https://panopticlick.eff.org/
If you want to get unwarranted attention - randomly flip your MACs - makes you look like a spook.
What we really need is a browser that looks very common via finger-print - the page is not shown - only an OCR document created from the page with links that have tracking information removed. Once the OCR doc is created the instance of the browser is removed.
I really miss web sites that don't use java..
I support the idea, but please make it optional for those of us who have reasons not to want to do it. One example of why you might not want to do this: if you restrict MAC addresses on your home wifi, this will break it.
If you want to keep your privacy, you'd better employ passive scanning. Avoids any MAC transmission at all and saves some power while disconnected.
Link in Wi-fi.org
Screw NetworkManager, its broken anyways and wpa_supplicant can already do everything one might want there:
Add 'mac_addr=1' and 'preassoc_mac_addr=1' to your /etc/wpa_supplicant.conf. Then your MAC-address will be randomized during the Scanning/Preassociation phase and afterwards.
For networks that need a static MAC address for filtering, add 'mac_addr=0' in the appropriate 'network' section. You also want to make sure you are using 'dhcpcd' instead of 'dhclient' (alias isc-dhcp-client). The latter can't deal with changing MAC addresses, it seems.
The summary was maybe bit misleading
This is not actually abput changing your MAC address, but using a different algorithm for IPv6 StateLess Address Auto Configuration than the EUI-64 method (which is "ef80${MAC}").
This doesn't impact IPv4 DHCP or AP MAC address filters at all, and if your routers are configured to send the right eouter advertisements in response to IPv6 router solicitation, will have no impact on DHCPv6.
You can already do this in linux via macchanger
BTDT. I have been randomizing my mac address in Linux for years.
We were a lot more private when there were open access points that didn't have security enabled. If you want to allow truly anonymous a communication, letting random people access the internet with no paper trail (logs) is the only way that it will work.
But, 10 years ago, the tech community shunned the freeloaders and people connecting to unsecure wifi. They had it all locked down, and now they are complaining about the tracking problem they created.
Open Sores playing catch-up again.
Already works fine on Linux. Especially useful for places that have "1 hour free wifi", based on MAC address.
for over a year and a half now!
What is more, both products also work on BSDs with GTK+ and Qt front ends.
Who needs this NetworkManager anyway?
I don't like being tracked, so I randomize my MAC with Pry-Fi. If you would be so kind to tell us who you work for, we can all enable the "Go to war!" mode to flood you with bogus MACs. Game?
As someone who has modeled pedestrian traffic, specifically for retail outlets - including stores. Well, you get things optimized and more easily found. Of course, you're rooted through the store like cattle. Ever notice how almost everyone goes in the same direction and the people who don't go the "right" way get ugly looks. There's a reason for that but, alas, I'm too ill to explain it and, frankly, I don't like you that much.
Hmm... They said this Prednizone (sp) would make me grumpy. They're right. So, seeing as I have a perfectly fine excuse - fuck you. (Don't take it personal.)
"So long and thanks for all the fish."