Originally posted by: RhythmAddict
Originally posted by: mboy
I am impementing wireless at work in the near future (on the cheap). AIN"T NO WAY I am even gonna deal with WEP.
I am gonna diable SSID broadcast, Use MAC filtering and only alow my router to pas IPsec traffic to a box running some type of 'NIX firewall (Ipcop,smoothwall or the like). Only 3DES or 256AES tunnels on my work wifi.
@ home (do not believe any of my neighbors are capable of cracking me, I live in the 'Burbs) I use Mac filter, no SSID broadcast AND 128bit WEP (until my buddy sends me my Cisco 1900 so I can create some Vlan's.
Bottom line is for Enterprise, you need real VPN (or switch level security)not that WEP crap.
Agreed. For now, anyway, VPN over wireless is the way to go. WEP is doable, but not difficult enough to get around. At least utilizing VPN, you're using a method of security that (in comparison to WEP/WPA) is tried and true.
I used to work at a...lets just say somewhere HIPPA would be very interested in. They had the audacity to put up a fully un protected (no mac filtering, no wep, no radius - NOTHING) network. Thi soon came down when a local paper postedan article about a patient inadvertantly hopping on there wireless network with their personal laptop. Somehow, the security team decided to then install a .b network (first one was .a) with 64 bit encryption. Oh yeah, sounds
Also, this is a great question/topic. I oftened wondered about the degree of diifficulty pertaining to spoofing MACs on a Wifi Network - Cheers :beer:
much more secure...