 |
Wireless Security::
WEP(Wireless Encryption Protocol)
Enable the highest level of WEP that ships with the access point.
SSID(Service Set ID)
Change the default SSID that ships with your access points and/or
wireless router.
Mode
Implement infrastructure mode, where all wireless clients on the network
link directly via an access point or wireless router. Disable the
"Ad-Hoc" mode, which enables a peer-to-peer network and
that allows a user to connect with other wireless LAN cards.
MAC Address Authentication
Set up MAC address authentication via access control lists (ACLs).
Configure your access points so they allow only clients with specific
MAC addresses to access the network, or allow access to only a given
number of MAC addresses.
Broadcast
Disable the "broadcast" mode in which access points periodically
transmit their SSIDs. Since hackers know the default names of many
access points, they can use freeware utilities, or even Windows®
XP, to find the names of nearby wireless networks.
Subnets.
Place access points on separate subnets and put a firewall between
that subnet and the main corporate network.
VPN(Virtual Private Networking)
Implement VPN over wireless LAN. This technology makes it possible
for users to communicate securely via a VPN tunnel between the client
desktop or notebook PC and the wireless access point or router.
Educate
The more network users know and understand about the security risks
of wireless the less chances of intrusion. Enforce a wireless security
policy. |
|