public inbox for linux-bluetooth@vger.kernel.org
 help / color / mirror / Atom feed
* [Bluez-users] Limit communication to serveral devices
@ 2004-08-25 13:45 Philip Lawatsch
  2004-08-25 14:24 ` Marcel Holtmann
  0 siblings, 1 reply; 7+ messages in thread
From: Philip Lawatsch @ 2004-08-25 13:45 UTC (permalink / raw)
  To: bluez-users

Hi,


Call me paranoid but I would like to know if there is any way to limit 
all types of communication to just several devices by checking with the 
hardware addresses.

I understand that in principle not being discoverable and the pin 
challenge should help you with being secure but to me this is not enough.

I'm currently running 2 class 1 devices to serve my flat with rfcomm for 
dial in and I for sure do not want anyone besides me to get access to 
these com ports.

Is there anything I can do to tighten security and limit all 
communication to just some devices?

I do understand that even this is no guarantee for anything, but I'd for 
sure feel better :)

kind regards Philip


-------------------------------------------------------
SF.Net email is sponsored by Shop4tech.com-Lowest price on Blank Media
100pk Sonic DVD-R 4x for only $29 -100pk Sonic DVD+R for only $33
Save 50% off Retail on Ink & Toner - Free Shipping and Free Gift.
http://www.shop4tech.com/z/Inkjet_Cartridges/9_108_r285
_______________________________________________
Bluez-users mailing list
Bluez-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/bluez-users

^ permalink raw reply	[flat|nested] 7+ messages in thread
* Re: [Bluez-users] Limit communication to serveral devices
@ 2004-08-26  8:05 Michael Schmidt
  2004-08-26  8:53 ` Philip Lawatsch
  2004-08-26 12:10 ` Steven Singer
  0 siblings, 2 replies; 7+ messages in thread
From: Michael Schmidt @ 2004-08-26  8:05 UTC (permalink / raw)
  To: philip; +Cc: bluez-users

Hi Philip,

> Call me paranoid but I would like to know if there is any way to limit 
> all types of communication to just several devices by checking with the 
> hardware addresses.
> 
> I understand that in principle not being discoverable and the pin 
> challenge should help you with being secure but to me this is not enough.
> 
> I'm currently running 2 class 1 devices to serve my flat with rfcomm for 
> dial in and I for sure do not want anyone besides me to get access to 
> these com ports.
> 
> Is there anything I can do to tighten security and limit all 
> communication to just some devices?
> 
> I do understand that even this is no guarantee for anything, but I'd for 
> sure feel better  :) 

When assessing your level of security (and evaluating address 
filtering), keep in mind that it's not too difficult to masquerade BT 
device addresses. You only neeed to look up the Axis OpenBT stack source 
code to figure out how to adjust the device address of certain Ericsson 
and CSR-based modules.

Clearly, your main line of defense should be a strong BT PIN.


Cheers,

Michael


-- 
===========================================
Michael Schmidt
-------------------------------------------
Institute for Data Communications Systems
University of Siegen, Germany
===========================================


-------------------------------------------------------
SF.Net email is sponsored by Shop4tech.com-Lowest price on Blank Media
100pk Sonic DVD-R 4x for only $29 -100pk Sonic DVD+R for only $33
Save 50% off Retail on Ink & Toner - Free Shipping and Free Gift.
http://www.shop4tech.com/z/Inkjet_Cartridges/9_108_r285
_______________________________________________
Bluez-users mailing list
Bluez-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/bluez-users

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2004-08-26 12:10 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-08-25 13:45 [Bluez-users] Limit communication to serveral devices Philip Lawatsch
2004-08-25 14:24 ` Marcel Holtmann
2004-08-25 19:50   ` Philip Lawatsch
2004-08-25 20:16     ` Marcel Holtmann
  -- strict thread matches above, loose matches on Subject: below --
2004-08-26  8:05 Michael Schmidt
2004-08-26  8:53 ` Philip Lawatsch
2004-08-26 12:10 ` Steven Singer

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox