On 02/12/2014 08:00 AM, Hans-Christoph Steiner wrote:

> Even with mesh however, you are emitting a radio signal, that is 
> trackable via your MAC hardware address, and so on. Location
> tracking of wifi signals via MAC is now a fairly common skill that
> even ad marketers are using, so I wouldn't put it beyond a
> government.

For what it is worth, the mode the wi-fi chipset is in seems to make a
difference.  When tests were run in Syria a few years ago ad-hoc mode
seemed to fly under the radar (so to speak..) while managed mode did
not.  We did not try raw injection in AP mode.

> Most mesh systems are built for humanitarian purposes and not 
> adversarial situations, and so the state of their security and 
> anti-surveillance features is quite minimal.

We could always use help on the node-side of things.  IPsec is a
fickle beast under the best of conditions.

> I would agree. If you are being actively targeted for bombing, I
> would avoid using radio emitting systems at all. Netbooks or cheap
> laptops

I concur.  Minimize emissions as much as possible.

> usually radiate less than 50mW. That's a lot less than 3000mW.  The
> risk is that wifi still radiates a unique ID (the MAC address).
> But if you use a MAC

For certain values of 'unique' (on a strictly technical basic) but
your point stands.

> changer, then you can change the MAC address every time the device
> uses a different wifi, and that will make it very difficult to
> track.

There is software to automate that part of the process, and it works
quite well.

