What's new

GTAC5300 log entries

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

69boss302

New Around Here
Im getting a ton of these entries in my logs, does anyone know what it means? It looks like someone is trying to break in wirelessly but I live in the middle of the woods, and theres no chance someone is hitting me, at least I think...

Nov 16 18:22:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:20 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:30 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:40 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:50 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:00 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
 
Im getting a ton of these entries in my logs, does anyone know what it means? It looks like someone is trying to break in wirelessly but I live in the middle of the woods, and theres no chance someone is hitting me, at least I think...

Nov 16 18:22:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:20 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:30 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:40 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:22:50 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:00 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)
Nov 16 18:23:10 wlceventd: WLCEVENTD wlceventd_proc_event(386): eth8: Deauth_ind B4:E6:2A:B5:26:69, status: 0, reason: Class 3 frame received from nonassociated station (7)


Is B4:E6:2A:B5:26:69 a mac address of one of your devices on your LAN?
 
I should have stated that, my apologies. No this MAC is not on my client list. Not even anything close (meaning 68 instead of 69 etc)
 
got any old devices laying around you might not realize are still on? strange. a search for it says maybe it could be an LG phone? do you see other networks near when you scan, nothing at all?
 
Definitely no LG phone. wow, weird. and i would have thought it would show up on my client list. Any way I can block it? I wouldnt be surprised if I cant, according to Asus I cant block incoming blocks of addresses nor can I block outbound services, so Im learning while this thing looks neat, it sucks as a firewall.
 
Definitely no LG phone. wow, weird. and i would have thought it would show up on my client list. Any way I can block it? I wouldnt be surprised if I cant, according to Asus I cant block incoming blocks of addresses nor can I block outbound services, so Im learning while this thing looks neat, it sucks as a firewall.
looks like its already blocked. not sure what you mean to block incoming blocks. You can set mac filter on wireless for another layer, also make network hidden and still see if it still tries to connect. pretty sure you can use network services filter to block outgoing ports. but I aigree my ISP router had a better firewall options. I plan on using an old pc as a pfsense router once I get it from my old address for better vlan, openvpn, and IDS/IPS support. Or maybe I will try out sophos xg which supposedly blocks everything including outgoing when you first install it. Then you just configure it to allow what you need working lol.
 
Last edited:
Good point about it already being blocked in this case.
I tried outgoing ports but even though it says its there it doesnt really do it. as far as blocking incoming, I can block a single address but not a range. Kills me that this device has so much potential but falls short
 
Good point about it already being blocked in this case.
I tried outgoing ports but even though it says its there it doesnt really do it. as far as blocking incoming, I can block a single address but not a range. Kills me that this device has so much potential but falls short

I admit I haven't even tried to block outgoing ports with this router. I use to block all outgoing on my windows and linux os firewalls and on my isp router. But i have so many devices now these routers seem to have enough trouble with everything else, I figured I didn't want to add more hassle. lol. I use to macfilter everything too, but that seems to be becoming deprecated. Either its not implemented right or the routers can't handle more then 20 devices filtered. Probably public opinion swaying developers as well. security is just not deemed practical anymore because its all crackers who deem it trivial. all offensive and no defense, I don't even know why its called a security industry. Its more like a criminal industry and they are the ones informing the public. dont' know what the future holds. Its gonna keep getting worse until we wake up. Them and the gov't want to keep us vulnerable because its good for business. The reason I got an asus router in the first place is because at least they support the routers with security patches for a long time.
 
Last edited:

Similar threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top