Re: About 3g5 hardware

2022-08-07 Thread Bastien Baranoff
Hello if I remember i have tested to telnet 192.168.0.1 8090 or if I
broadcast DHCP from my PC I have 192.168.0.142 but in both cases i have
connection refused :( you mean that if I buy sysmocell i will be able to
flash FW on my nano3G will check if I can have serial. Thank you for your
response I will keep the community in touch if I can go further. I will
only be able to make new tests in 10 days... :(

Le dim. 7 août 2022 à 16:09, Neels Hofmeyr  a écrit :

> I dimly remember that the nano3G have both serial console contacts you can
> solder onto, as well as an exploitable DHCP client (what i heard is that
> the
> DHCP client is a bash script that fails to properly escape the host name
> given
> to the DHCP client). With that you might be able to gain ssh access. Even
> then
> you may not have much of a chance to get it to run, depending on the
> installed
> firmware.
>
> A factoid is that a nano3G obtained from sysmocom.de will work with
> osmo-hnbgw.
> Not sure if it is still in the shop... Some of them have also been given
> away
> free of charge, to non-commercial users: research / hacker spaces. So if I
> needed one to play with, I guess I would ask sysmocom indicating my
> intended
> use, or ask some of the people that got one from Accelerate3g5 -- in case
> there's someone no longer using their nano3G:
> https://osmocom.org/projects/cellular-infrastructure/wiki/Accelerate3g5
>
> HTH,
>
> ~N
>


Re: About 3g5 hardware

2022-08-07 Thread Neels Hofmeyr
Hi Bastien,

whether the device connects to your HNB-GW depends on the firmware +
configuration run on the device. The firmware cannot be shared openly.

Given that you gain access to the DMI configuration interface, this wiki page
may help:

https://osmocom.org/projects/cellular-infrastructure/wiki/Configuring_the_ipaccess_nano3G

~N


Re: About 3g5 hardware

2022-08-07 Thread Bastien Baranoff
Hello I got the nano3g now... I was only able to display a login page, by
setting first my ethernet connection to ip: 192.168.0.2 broadcast :
255.255.255.0 route : none, then by resetting this nano by pushing reset
button plug power wait for network fast blinking, then slow blinking, then
unpush this button.
When I have done that I ping 192.168.0.1 until there is a response. When I
got this response I go to http://192.168.0.1:8089 in my browser then I got
asking for credentials. I don't have ssh port open. The server running on
my nano is thttpd 2.25b I tried to hack it with no luck. Any clues ?
P.S. https://www.exploit-db.com/download/23306 this is the exploit used to
try hacking the nano.


Le mar. 14 juin 2022 à 14:14, Bastien Baranoff 
a écrit :

> Hello @osmocom i wonder something. I have bought IP. accès NANO 3 G S8
> Modèle # 237BA UMTS Band 2/5 (800 Mhz) will i have a chance to make it work
> with accelerate 3g5 software thanks, Bastien Baranoff
>


About 3g5 hardware

2022-06-14 Thread Bastien Baranoff
Hello @osmocom i wonder something. I have bought IP. accès NANO 3 G S8
Modèle # 237BA UMTS Band 2/5 (800 Mhz) will i have a chance to make it work
with accelerate 3g5 software thanks, Bastien Baranoff