QuickTopic (SM) free message boards QuickTopic (SM) free message boards
Skip to Messages
  Sign In to access your topic list  |New Topic |My Topics|Profile
Upgrade to Pro   Customize, show pictures, add an intro, and more:   QuickTopic Pro...and check out QuickThreadSM
Topic: WPA demystified
Views: 206, Unique: 175 
Subscribers: 1
What's
this?
Printer-Friendly Page
Subscribe to get & post, or stop messages by email Subscribe
About these ads
Who | When
Messagessort recent-bottom   
Post a new message
 
vitaminPerson was signed in when posted  7
07-12-2003 11:46 AM ET (US)
Re Matthew's comments of a wireless connected end point being hacked...My understanding was that with the end point in infrastructure mode and the AP configured to not allow inter-endpoint communication you could quite easily bypass this problem...

Orrrrr am I off track because it is possible to hyjack an end point's connection to an AP?
Matthew HamrickPerson was signed in when posted  6
07-12-2003 10:51 AM ET (US)
Aye, it is a good thing to use VPNs on wireless connections. You migth want to use other link-layer features as well though. For instance, if I'm joe cracker and I know that you're running an AP that only allows VPN connections to get through, then I'll just bind to the AP, hack your machine (the one running the VPN client) and use it's previously established connection through the VPN. Ergo, VPN + only talking to specific MAC addresses is a good idea.

I was very surprised to see that 802.11 did not use the security features from 802.10. Anyone ever looked at 802.10? It's philosophically similar to IPSec.
Wim LPerson was signed in when posted  5
07-11-2003 07:23 PM ET (US)
Edited by author 07-11-2003 07:24 PM
Lately, I've been thinking that the best way to go is to … use OS X's VPN client to encrypt my connection without using WEP or WPA.


A revolutionary idea! We could extend this thought to other situations. If only we could develop some sort of generic IP Security protocol, somehow…

sorry, this is a pet peeve of mine
mike skallasPerson was signed in when posted  4
07-11-2003 06:39 PM ET (US)
One password is a very smart move. If the process is too compex then residental users and SOHO users are going to give up and stick with plain-text. WPA simplifies encryption. That is a step in the right direction.
Wes FelterPerson was signed in when posted  3
07-11-2003 12:16 PM ET (US)
FYI: This article is syndicated from Small Net Builder, which has many in-depth Wi-Fi articles.
Matthew HamrickPerson was signed in when posted  2
07-11-2003 10:57 AM ET (US)
There's a somewhat dated, but useful "WiFi security checklist" over at Cryptonomicon.Net. http://www.cryptonomicon.net/modules.php?n...iewarticle&artid=10
cavalierfhPerson was signed in when posted  1
07-11-2003 10:16 AM ET (US)
If I may say so, Cory, 'pip pip!' That is the best way to handle wireless security with current technology: Treat the wireless like a very insecure wired link. There's no way to secure the link, so instead secure the traffic you send on it. OS X and *nix make it especially easy to build your own VPN system. I haven't had as much success getting Windows boxes to initiate sessions (They can client fine) but that's ok.. I don't run many servers off of Win :)
RSS link What's this?
QuickTopicSM message boards
Over 200,000 topics served
Learn more Frequently asked questions  Acknowledgements
What they're saying about QuickTopic
 Questions, comments, or suggestions? Contact Us
Read our use policy before beginning. We value your privacy; please read our privacy statement.
Copyright ©1999-2006 Internicity Inc. All rights reserved.