Pentester's Promiscuous Notebook
search
Ctrlk
TwitterGitHubBlog
  • README
  • ⚒️Pentest
    • C2chevron-right
    • Infrastructurechevron-right
      • ADchevron-right
      • Azure ADchevron-right
      • DevOpschevron-right
      • DBMSchevron-right
      • Authentication Brute Force
      • File Transfer
      • IPMI
      • Kiosk Breakout
      • Low-Hanging Fruits
      • LPE
      • Networkschevron-right
        • L2chevron-right
        • NAC Bypass
        • Scanning
        • SIP / VoIP
        • Sniff Traffic
      • NFS
      • Persistence
      • Pivoting
      • Post Exploitation
      • SNMP
      • SSH
      • TFTP
      • VNC
    • OSINTchevron-right
    • Password Brute Forcechevron-right
    • Perimeterchevron-right
    • Shellschevron-right
    • Webchevron-right
    • Wi-Fichevron-right
  • ⚔️Red Team
    • Basics
    • Infrastructure
    • Developmentchevron-right
  • 🐞Exploit Dev
    • BOFchevron-right
    • RE
    • WinDbg
  • ⚙️Admin
    • Git
    • Linuxchevron-right
    • Networkingchevron-right
    • Virtualizationchevron-right
    • Windows
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. ⚒️Pentestchevron-right
  2. Infrastructurechevron-right
  3. Networks

NAC Bypass

Network Access Control & Port Security (MAB, IEEE 802.1X, etc.)

  • https://luemmelsec.github.io/I-got-99-problems-but-my-NAC-aint-one/arrow-up-right

  • https://www.thehacker.recipes/physical/networking/network-access-controlarrow-up-right

  • https://habr.com/ru/company/jetinfosystems/blog/564238/arrow-up-right

hashtag
Tools

hashtag
FENRIR

  • https://github.com/Orange-Cyberdefense/fenrir-ocdarrow-up-right

  • [PDF] 802.1x NAC & BYPASS TECHNIQUES (Hack in Paris 2017, Valérian LEGRAND)arrow-up-right

hashtag
NACKered & nac_bypass

  • https://github.com/p292/NACKeredarrow-up-right

  • https://github.com/scipag/nac_bypassarrow-up-right

  • https://github.com/snovvcrash/nac_bypassarrow-up-right

Set up the bridge (eth0 is connected to the switch, eth1 is connected to the authenticated client):

Check iptables rules:

Reset all the changes (bridge interface and iptables rules):

Last updated 3 years ago

  • Tools
  • FENRIR
  • NACKered & nac_bypass
$ sudo ./nac_bypass_setup.sh -1 eth0 -2 eth1 [-S] [-R]
$ sudo iptables -t nat -L
$ sudo ./nac_bypass_setup.sh -r