RE: Wireless access

From: Eric Brown (ericbrow_at_ziplip.com)
Date: 03/26/04

  • Next message: Jeff Uslan: "MS Outlook/Outlook Express Preview Pane Security Issue"
    Date: Fri, 26 Mar 2004 04:34:06 -0800 (PST)
    To: Wesley Ward <wward@truenorthsolutions.net>, Bruyere Michel <mbruyere@ezemcanada.com>, <security-basics@securityfocus.com>
    
    

    Hello all,
    Wes gives excellent advice that I'd like to elaborate on just a bit. I would change the SSID to some combination of random or odd alpha-numeric characters (just so long as it isn't obvious like "linksys" or his dog's name), and if the wireless router supports it, turn off broadcasting the SSID to make it a little more difficult to find.

    Then implement WEP over the wireless network.

    But do keep in mind, if there's any kind of h4x0r in the neighborhood, even the WEP can be cracked.

    Eric

    > -----Original Message-----
    > From: Wesley Ward [mailto:wward@truenorthsolutions.net]
    > Sent: Thursday, March 25, 2004, 8:36 PM
    > To: Bruyere Michel <mbruyere@ezemcanada.com>,
    > security-basics@securityfocus.com
    > Subject: RE: Wireless access
    >
    > You should be able to go into the wireless properties and specify his
    > SSID as the default network. You should also setup WEP on his wireless
    > router and PCI card as well, this way anyone with a wireless card will
    > not be able to access his router. Since he is a director, he propably
    > has important info that is vulnerable until the access point is locked
    > down. Hope this helps...
    >
    > -Wes
    >
    > -----Original Message-----
    > From: Bruyere, Michel [mailto:mbruyere@ezemcanada.com]
    > Sent: Thursday, March 25, 2004 8:36 AM
    > To: security-basics@securityfocus.com
    > Subject: Wireless access
    >
    > Hi,
    > I have a user who uses a wireless network at home. He just asked
    > me (it's a director) to find a way to avoid his laptop (Toshiba tecra
    > running XP Pro) connecting on the neighbor's router instead of his. He
    > has a D-Link
    > 614+, I don't know this model at all so I'm asking you guys if you know
    > 614+a
    > way to restrict his laptop to only HIS router.
    >
    > As you can see, I'm not very familiar with Wireless :/
    >
    > Thanks for any inputs
    >
    > M.Bruyere
    > Network/systems administrator
    > CompTIA A+, Network+
    >
    >
    > ------------------------------------------------------------------------
    > ---
    > Ethical Hacking at the InfoSec Institute. Mention this ad and get $545
    > off any course! All of our class sizes are guaranteed to be 10 students
    > or less to facilitate one-on-one interaction with one of our expert
    > instructors.
    > Attend a course taught by an expert instructor with years of
    > in-the-field pen testing experience in our state of the art hacking lab.
    > Master the skills of an Ethical Hacker to better assess the security of
    > your organization.
    > Visit us at:
    > http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    > ------------------------------------------------------------------------
    > ----
    >
    >
    > ---------------------------------------------------------------------------
    > Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
    > any course! All of our class sizes are guaranteed to be 10 students or less
    > to facilitate one-on-one interaction with one of our expert instructors.
    > Attend a course taught by an expert instructor with years of in-the-field
    > pen testing experience in our state of the art hacking lab. Master the skills
    > of an Ethical Hacker to better assess the security of your organization.
    > Visit us at:
    > http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    > ----------------------------------------------------------------------------
    >

    To do is to be. -Socrates
    To be is to do. -Satre
    Do be do be do. -Sinatra

    ---------------------------------------------------------------------------
    Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
    any course! All of our class sizes are guaranteed to be 10 students or less
    to facilitate one-on-one interaction with one of our expert instructors.
    Attend a course taught by an expert instructor with years of in-the-field
    pen testing experience in our state of the art hacking lab. Master the skills
    of an Ethical Hacker to better assess the security of your organization.
    Visit us at:
    http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    ----------------------------------------------------------------------------


  • Next message: Jeff Uslan: "MS Outlook/Outlook Express Preview Pane Security Issue"

    Relevant Pages

    • Re: Wireless and "not so much on" internal attacks
      ... 128bit WEP. ... The question about internal attacks stems from the fact that customers have ... Wireless and "not so much on" internal attacks ... While on the network an attack would become more of an ...
      (Security-Basics)
    • Re: Security issues with regards to wireless networks...
      ... a wireless network changes all that. ... >> firewall if the wireless network isn't configured correctly. ... Equivalent Privacy, or WEP, which has been widely publicized as the main ... too short to withstand a brute-force attack. ...
      (comp.os.linux.security)
    • Re: Security issues with regards to wireless networks...
      ... a wireless network changes all that. ... >> firewall if the wireless network isn't configured correctly. ... Equivalent Privacy, or WEP, which has been widely publicized as the main ... too short to withstand a brute-force attack. ...
      (comp.security.firewalls)
    • RE: Dumb question abt. Wireless WEP security
      ... I don't know if the technology improved any, but when deploying wireless ... You can use WEP in coordination with other ... technologies, VPN, IPSEC, etc to make your network more secure. ... We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion ...
      (Security-Basics)
    • RE: Wireless access
      ... Internet completely separate from your corporate network. ... if you have mobile users that have built-in wireless that they ... > Ethical Hacking at the InfoSec Institute. ... > pen testing experience in our state of the art hacking lab. ...
      (Security-Basics)