GTAC5300 log entries

  • ATTENTION! As of November 1, 2020, you are not able to reply to threads 6 months after the thread is opened if there are more than 500 posts in the thread.
    Threads will not be locked, so posts may still be edited by their authors.
    Just start a new thread on the topic to post if you get an error message when trying to reply to a thread.

69boss302

New Around Here
Im getting a ton of these entries in my logs, does anyone know what it means? It looks like someone is trying to break in wirelessly but I live in the middle of the woods, and theres no chance someone is hitting me, at least I think...

Nov 16 18:22:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:20 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:30 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:40 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:50 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:00 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
 

Striker317

Regular Contributor
Im getting a ton of these entries in my logs, does anyone know what it means? It looks like someone is trying to break in wirelessly but I live in the middle of the woods, and theres no chance someone is hitting me, at least I think...

Nov 16 18:22:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:20 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:30 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:40 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:50 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:00 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)

Is B4:E6:2A:B5:26:69 a mac address of one of your devices on your LAN?
 

69boss302

New Around Here
I should have stated that, my apologies. No this MAC is not on my client list. Not even anything close (meaning 68 instead of 69 etc)
 

cooloutac

Senior Member
got any old devices laying around you might not realize are still on? strange. a search for it says maybe it could be an LG phone? do you see other networks near when you scan, nothing at all?
 

69boss302

New Around Here
Definitely no LG phone. wow, weird. and i would have thought it would show up on my client list. Any way I can block it? I wouldnt be surprised if I cant, according to Asus I cant block incoming blocks of addresses nor can I block outbound services, so Im learning while this thing looks neat, it sucks as a firewall.
 

cooloutac

Senior Member
Definitely no LG phone. wow, weird. and i would have thought it would show up on my client list. Any way I can block it? I wouldnt be surprised if I cant, according to Asus I cant block incoming blocks of addresses nor can I block outbound services, so Im learning while this thing looks neat, it sucks as a firewall.
looks like its already blocked. not sure what you mean to block incoming blocks. You can set mac filter on wireless for another layer, also make network hidden and still see if it still tries to connect. pretty sure you can use network services filter to block outgoing ports. but I aigree my ISP router had a better firewall options. I plan on using an old pc as a pfsense router once I get it from my old address for better vlan, openvpn, and IDS/IPS support. Or maybe I will try out sophos xg which supposedly blocks everything including outgoing when you first install it. Then you just configure it to allow what you need working lol.
 
Last edited:

69boss302

New Around Here
Good point about it already being blocked in this case.
I tried outgoing ports but even though it says its there it doesnt really do it. as far as blocking incoming, I can block a single address but not a range. Kills me that this device has so much potential but falls short
 

cooloutac

Senior Member
Good point about it already being blocked in this case.
I tried outgoing ports but even though it says its there it doesnt really do it. as far as blocking incoming, I can block a single address but not a range. Kills me that this device has so much potential but falls short
I admit I haven't even tried to block outgoing ports with this router. I use to block all outgoing on my windows and linux os firewalls and on my isp router. But i have so many devices now these routers seem to have enough trouble with everything else, I figured I didn't want to add more hassle. lol. I use to macfilter everything too, but that seems to be becoming deprecated. Either its not implemented right or the routers can't handle more then 20 devices filtered. Probably public opinion swaying developers as well. security is just not deemed practical anymore because its all crackers who deem it trivial. all offensive and no defense, I don't even know why its called a security industry. Its more like a criminal industry and they are the ones informing the public. dont' know what the future holds. Its gonna keep getting worse until we wake up. Them and the gov't want to keep us vulnerable because its good for business. The reason I got an asus router in the first place is because at least they support the routers with security patches for a long time.
 
Last edited:

Latest threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top