Wednesday, 28 November 2012

Work At Home Uk


WEP is getting harder to crack because firmware upgrades are helping prevent the transmission of weak data packets. So with enough traffic you can capture the whole key; wEP can be cracked because it uses the same key for each data frame. Collecting enough wireless traffic will take at least a couple hours under ideal conditions. Only once you have sniffed enough network traffic for weak IV's; this is true, you will hear security experts say that WEP can be cracked in 5 minutes. WEP - Is the first and lowest standard for wireless security.

WPA also helps wireless clients roam from access point to access point while working in an enterprise environment more efficiently. This rotation of keys makes in vastly more difficult for a cracker to capture the whole shared key. WPA's main answer to the flaw of WEP is that instead of using the same key for each data frame it changes the keys. WPA(Wi-Fi Protected Access) - Is the upgraded version of WEP.

Some wireless adapters may not support AES encryption so you need to take that into account when planning your wireless network. AES is the more advance form of encryption over TKIP. TKIP( Temporal Key Integrity Protocol) and AES(Advanced Encryption Standard), wPA uses two different types of encryption.

There are different ways to implement WPA and WPA2: WPA2 - Further improves upon the ability for the wireless client to roam from access point to access point.

The client and the access point or wireless router will each share a passphrase which is encrypted with TKIP. WPA-PSK with TKIP - PSK Stands for Pre Shared Key.

Remember you will have to monitor your wireless network because you might have more dropped packets with AES if your firmware is not up to date on your access point or wireless adapter. WPA-PSK with AES - This is the same as the above but you will use AES encryption.

This option is only available if you are using WPA2 WPA2-PSK + Mixed - This solution still uses the shared key but will accept either TKIP or AES encryption clients.

You can use a RADIUS server to run a wireless hot spot which will take care of billing and customer portal, also. If your business hours are only during the day you won't want people using it at night. A great policy to implement with a radius server is limiting the times and days your users can access the network. RADIUS servers can create policies which limit what network resources the wireless user has available. If you are using a RAIDUS server you have complete control over who enters your wireless network. You don't have any control of who is accessing your network, if your PSK is leaked to the wrong person or stolen somehow. A RADIUS server is basically a database of user names with passwords. Authenticating the user is very important because with out a RADIUS server you really don't know who is using your wireless network. And the RADIUS server authenticates the user, tKIP or AES encrypts the keys, wPA rotates the keys. WPA-Radius- This is the most secure wireless solution at this time.

Some older adapters do not support WPA or WPA2 so make sure you know what your buying. This requires you to down load the WPA2 patch for Windows XP from Microsoft and update your wireless adapters driver, if you are more tech savy you should use WPA2. Home users will want to use at least WPA with either TKIP or AES to protect your network.

Such as Free RADIUS, microsoft windows 2003 server can be used as a RADIUS server or you can use one of the many open source RADIUS servers which are free on the internet. To use RADIUS you need to install a RADIUS server. Business users will want to use WPA-RADIUS or WPA2-RADIUS.

Just remember that if you use WPA2 you will have to down load the patch from Microsoft and update your wireless adapters driver.

Keep your wireless network Simple and Secure.

No comments:

Post a Comment