Ads by TechWords

See your link here
Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
Mobile/Wireless Computing
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
 

How to build a secure WLAN

February 6, 2003 12:00 PM ET

Computerworld - Real-time network protection required for wireless networking
Wireless LANs have experienced tremendous growth since the introduction of the 802.11b wireless networking standard spurred the development of a wide range of "Wi-Fi" solutions developed by network equipment vendors. Flexibility, ease of deployment and low component costs constitute three major drivers for the popularity of WLANs. However, the same flexibility and mobility provided by wireless networking also introduces new security vulnerabilities in addition to those that threaten conventional LANs. For real-time communications like Wi-Fi, a comprehensive real-time network protection strategy is required to enable pervasive, widespread deployment.

WLAN security threats inhibit build-out
Because WLANs use publicly available radio spectrum as the medium to carry data, unauthorized access and eavesdropping are key concerns. Major security threats to WLANs include the following:

  • WLAN access points can be probed by anyone within reach of the network's radio signal, thus constituting physically unbounded entry points from which to launch intrusions, viruses and all other types of attacks that threaten landline networks.

  • WLAN access points are often deployed inside corporate networks behind conventional firewalls, making these access points even more attractive as points for launching attacks.

  • WLANs are extremely vulnerable to denial-of-service attack and interruption. Any malicious hacker with a laptop and a wireless Network Interface Card can transmit wireless signal interrupters in close proximity to company sites where WLANs are deployed and effectively jam a Wi-Fi signal.

  • Internal employees can set up their WLAN interface cards to operate in peer-to-peer (P2P) mode to communicate directly with people outside of the company.

Naturally, the framers of the 802.11b wireless standards were aware of these vulnerabilities and designed a number of security features into the technology to address them. These include the following:
The use of Service Set Identifier (SSID): The SSID is a shared secret (typically an ASCII string) that has to be configured by network administrators into all access points and wireless terminals (e.g., PCs) that share a common WLAN. The weakness of the SSID is that it's a relatively simple password, common to all devices on the WLAN, and once the SSID is compromised, any device with the SSID can gain unrestricted access. Furthermore, the default setting of SSID is often not changed in WLAN deployments, and access points are typically configured to broadcast their SSID, further degrading security because intruders can get the SSID through easily obtainable tools.
Media Access Control (MAC) address filtering: Since every WLAN terminal's network card has a unique MAC address, it's possible to manually maintain a set of allowed MAC address lists for


Additional Resources

Xerox
By using solid ink technology only from Xerox, you could save up to 65% by printing color for the cost of black and white. Enter for a chance to WIN a PhaserTM 8860 network color printer!
Microsoft
Save time and mitigate security risk. Deploy it now.
Sybase
In this white paper, IDC analyzes the role of next-generation mobile enterprise platforms as organizations seek a more strategic deployment of mobile solutions.

Learn the important issues you must consider before starting your next mobility initiative. Get your mobility white paper from IDC now, compliments of Sybase.

White Papers & Webcasts

2007 Gartner Magic Quadrant Report
Riverbed positioned in Leaders Quadrant of Gartner Magic Quadrant for WAN Optimization Controllers. Analyzing strengths vs. cautions, Gartner helps organizations looking to acquire...  

5 Best Practice Tips for Managing BlackBerry, iPhone, & Windows Mobile Devices
(Source: Zenprise) Mobile devices continue to proliferate across the enterprise, driven largely by the increase in worker productivity, efficiency, and flexibility they provide....

Forrester Consulting - Optimizing Users and Applications in a Mobile World
Are your workers going increasingly mobile? Don't wait for their calls to slam Support when they experience poor application performance on the road....  

Managing Laptops Outside the Office
(Source: Absolute Software) In this webinar, learn how you can reduce costs by tracking mobile computers no matter where they are located. Featuring...

IT Best Practices: To Support or Not Support Consumer Owned Smartphones
Companies have historically standardized on a single smartphone platform. Of late, IT is facing pressure to support the increasing influx of consumer owned...  

What Are 'Free' Remote Support Tools Really Costing You?
(Source: LogMeIn) In this webinar from LogMeIn, discover how "next generation" remote support tools are optimized to provide advanced capabilities like scripting, system...

Lennox Goes Mobile and Increases Service Performance by 50%
This white paper explains how Lennox remedied major system malfunctions with Aeroprise Mobility for BMC Remedy Service Desk on smartphones....  

IT Strategies for Remotely Supporting a Distributed Workforce
(Source: Citrix Online) Today's workforce is a distributed one - workers across industries are telecommuting, working out of satellite offices and connecting into...

Realizing Rapid ROI Through Mobility
Companies are reaping the benefits from mobile CRM, field service and sales force automation processes with the latest Research In Motion (RIM) offerings....  

Usability Is Everything
Learn what sets Workday's HR and Payroll solutions apart from the competition....