Re: wireless network interception

From: Duane Arnold (NotMe_at_NotMe.com)
Date: 09/19/04


Date: Sun, 19 Sep 2004 01:18:32 GMT

spoking@bellsouth.net (spokin) wrote in
news:cb8310a2.0409181203.6079598b@posting.google.com:

> Ok, all you wireless security freaks, I need your help - educate me.
>
> Question 1: given a wireless router with WEP encryption, can an
> outside machine intercept a signal from a network machines WITHOUT
> getting the router to recognize it (the interceptor) in some fashion?

WEP can be cracked and that's why there is WAP.

>
> Question 2: If eavesdropping is actually taking place, is there some
> way to DETECT that it is happening? How?

Maybe, I don't know and maybe you should limit how many wireless
computers are on the network. Maybe, you should have one machine that is
a wired connection, which is more secure that wireless, if you're
concerned.

>
> Question 3: If isp account hijacking were taking place thru my router,
> to spam or whatever, shouldn't i be able to see their connection in
> the router log?

If you have a router that shows outbound connections, you'll be able to
see everything going outbound or inbound to the router. You may need a
log viewer to see the logs for more than one day of traffic.

>
>
>
> My setup is a wireless router as my DHCP server, with DSL connection
> on the other side. All machines on local network run software
> firewalls, base ip address range has been customized, password for the
> router is strong, and I run WEP. But I think my questions are generic
> enough that this detail won't matter.

The DHCP would help you detect if some other machine was not part of your
network got an IP and that prevented one of your machines from getting a
DHCP IP. But that would be based on the number of DHCP IP(s) that can be
issued is the number of computers wired or wireless that can physically
connect to the network. If you have 3 machines total, then total number
of DHCP IP(s) that should be issued is 3. If it's 10 then someone else
could get an IP. Hey, it's better than nothing. And besides, if one
wanted to get an IP, they could always use one of the router's static IP
(s).

If you're that concerned about it, then use the router's wireless MAC
Filtering feature, if it's got it, which only allows a wireless
connection to your router based on the MAC of the wireless NIC that could
connect to the router.

There is also wireless IDS systems as well, if you're that concerend.

Duane :)



Relevant Pages

  • Re: Linksys NAS200 Network Storage adapter
    ... The only two wireless network settings that are of any consequence are the SSID and the encryption method and password. ... either click the "Print Network Settings" button on the final screen of the Wizard or simply access the appropriate XML file and get at them that way and then use the information to configure the router manually as I explained earlier. ... I've read thru some of the MS web site on that product and it appears to do everything a NAS will do plus other cool features, such as, with an xbox360 with the wireless adapter, I can stream my video/pics to my TV for family viewing. ...
    (microsoft.public.windowsxp.network_web)
  • My Wireless Sharing Problem -- Specifics
    ... File and print sharing is set up so that all computers can print to and share with two other machines. ... The router I was using before moving to wireless was a LinkSys BEFSR81, firmware revision 2.51.1 It was a perfectly functioning network for what I wanted to do. ...
    (alt.internet.wireless)
  • Re: Networking Question - VLANs on SBS 2003 Premium SP1
    ... Finally was able to get some network downtime to make the change in routers ... wireless router, but - once connected to the SBS box and I've run CEICW, the ... I ran the ISA and SBS BPA's and didn't see anything. ... I put the old router back in service so I could work on this some more. ...
    (microsoft.public.windows.server.sbs)
  • Re: share my printer between 2 computers and surf with 2 computers at same time
    ... The main piece of hardware you need to buy is a router. ... Because wireless routers for home use are ... you can use that to have a wired network. ... -2 short UTP cables ...
    (microsoft.public.windowsxp.network_web)
  • RE: wirless connection security issues
    ... wrt54gl only has a single port for the incoming network. ... I would set up the router to use the Class C private IP range ... for your machines. ... Subject: wirless connection security issues ...
    (Security-Basics)