Simple Radius Test Tool

XTest is A 802.1x Supplicant Test Tool for Wired VoIP Networks based on RFC 3847 EAP-MD5 Authentication. It can be used to assess the password strength within wired Ethernet environments that rely on 802.1x to protect IP Phones and the VoIP infrastructure against rogue PC access. XTest is developed in C and freely available to anyone, under the GPLv3 license.

RADIUS test and monitoring client For Windows, FreeBSD, Sparc Solaris and Linux platforms. RADIUS test client is an easy to use tool to simulate, debug and monitor RADIUS and Network Access Servers (NAS). Simulate RADIUS Authentication, Accounting and CoA/Disconnect requests for multiple devices and usage scenarios. The software is periodically scanned by our antivirus system. We also encourage you to check the files with your own antivirus before launching the installation. This download is absolutely FREE. The download version of RADIUS test client is 4.0.48. The download is provided as is, with no modifications or changes made on our side.

Simple Radius Test Tool

XTest was developed with the specific aim of improving the security of environments that use 802.1x to protect IP Phone endpoints and their supporting VoIP Infrastructure. With the increasing prevalence of 802.1x Supplicant support in wired hard Phones, 802.1x will be increasingly used to ensure that remote IP Phones placed in areas with low physical security will have their directly connected ethernet switch ports secured against unauthorized access. Furthermore, the tool can demonstrate the danger of relying solely on 802.1x, because the current wired 802.1x implementation only requires authentication when the port initially comes up/up. Subsequent packets are not authenticated, allowing an attacker to share a connection on a hub with the valid 802.1x supplicant, allowing unauthorized switchport access.

Features

  • 802.1x Supplicant: XTest can test the username and password against an 802.1x Authenticator (Ethernet Switch), and supports re-authentication. This is a simple and easy method of comparing the password against a valid 802.1x Supplicant running on an IP Phone or a PC.
  • Offline pcap dictionary attack: If you capture a valid 802.1x authentication sequence into a pcap file, XTest will run a dictionary attack against the pcap using a supplied wordlist. XTest will elicit the password from the pcap if the dictionary file contains the valid password.
  • Shared Hub unauthorized access: Using a shared hub, XTest can use the successful authentication of a valid 802.1x supplicant to gain unauthorized access to the network

XTest News

August 8, 2008

Simple Radius Test Tool Free

Version 1.0 has been released.