<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How to Secure your Wireless Network</title>
	<atom:link href="http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 00:40:49 -0600</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Grey's Anatomy</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-803913</link>
		<dc:creator>Grey's Anatomy</dc:creator>
		<pubDate>Tue, 26 May 2009 18:04:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-803913</guid>
		<description>It&#039;s always good to find like-minded people.  Thanx and I&#039;m going to add you to my RSS feed.</description>
		<content:encoded><![CDATA[<p>It&#8217;s always good to find like-minded people.  Thanx and I&#8217;m going to add you to my RSS feed.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gunshotglitter</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-568832</link>
		<dc:creator>gunshotglitter</dc:creator>
		<pubDate>Sun, 14 Dec 2008 23:06:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-568832</guid>
		<description>im struggling to secure my network and i am looking for help? anyone think they might be able to?</description>
		<content:encoded><![CDATA[<p>im struggling to secure my network and i am looking for help? anyone think they might be able to?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pinanti is pinanti &#187; Blog Archive &#187; links for 2005-12-16</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-1043</link>
		<dc:creator>pinanti is pinanti &#187; Blog Archive &#187; links for 2005-12-16</dc:creator>
		<pubDate>Fri, 03 Feb 2006 17:20:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-1043</guid>
		<description>[...] gHacks Â» How to Secure your Wireless Network (tags: wireless sysadmin security howto wifi network) [...]</description>
		<content:encoded><![CDATA[<p>[...] gHacks Â» How to Secure your Wireless Network (tags: wireless sysadmin security howto wifi network) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: otro blog más &#187; Unos cuantos de seguridad</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-955</link>
		<dc:creator>otro blog más &#187; Unos cuantos de seguridad</dc:creator>
		<pubDate>Sun, 22 Jan 2006 14:49:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-955</guid>
		<description></description>
		<content:encoded><![CDATA[<p>[...] Sobre todo, la cosa va de WiFi, con un &#8216;proof of concept&#8217; de cracking WPA, este Essential Wireless Hacking Tools, una guía para asegurar una red inalámbrica y el artículo Cracking WPA (y su segunda parte). [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: teknokool.net &#187; links for 2005-12-15</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-555</link>
		<dc:creator>teknokool.net &#187; links for 2005-12-15</dc:creator>
		<pubDate>Thu, 15 Dec 2005 20:20:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-555</guid>
		<description>[...] gHacks Â» How to Secure your Wireless Network (tags: wireless networking wifi security) [...]</description>
		<content:encoded><![CDATA[<p>[...] gHacks Â» How to Secure your Wireless Network (tags: wireless networking wifi security) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Creation Robot &#187; How to Secure your Wireless Network</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-546</link>
		<dc:creator>Creation Robot &#187; How to Secure your Wireless Network</dc:creator>
		<pubDate>Thu, 15 Dec 2005 11:42:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-546</guid>
		<description>[...] How to Secure your Wireless Network [...]</description>
		<content:encoded><![CDATA[<p>[...] How to Secure your Wireless Network [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Otto</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-543</link>
		<dc:creator>Otto</dc:creator>
		<pubDate>Wed, 14 Dec 2005 17:17:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-543</guid>
		<description>Few things:

&gt;It does not make sense to change the name but leave broadcasting on.

Yes, it does. The SSID identifies the network, and leaving broadcasting on lets it show up on a list of networks, like in the XP wireless network list. This makes it easy for people to connect to your network. Since you&#039;re using WEP/WPA, they still need the password.

&gt;Note its still possible to sniff the SSID, its still send in clear text when a client associates with the router / access point.

The SSID is not sent in just the association packets. The SSID is sent in the clear in *ALL* packets. So it&#039;s not just possible to sniff the SSID, it&#039;s trivial.

Disabling SSID broadcast adds no security to your network. None. Zero. At best, it will keep the little old lady next door from seeing it in the list of networks on her computer.


&gt;Its possible to sniff your mac addresses and fake them, donÂ´t rely on this alone.

It&#039;s not just possible, it&#039;s trivial. It&#039;s *one command* on a Linux box. A slight bit trickier on a Windows box, I grant you. MAC filtering adds no real security either.

And the worst thing about both of these is that they make your wireless network *much* harder to administer, for no real security benefit. With SSID Broadcast on and MAC filtering off, you can walk up and hand somebody the password for the network, and they&#039;ll be able to connect. No issues. You don&#039;t have to touch a computer. But if you enable both of these, then suddenly you have to log into the router from another machine and get the guy&#039;s MAC address and add it and tell him the SSID as well as the password.. It&#039;s a lot more complex. 

Simplify. All you need for wireless security is encryption turned on. WPA is enough. If you&#039;re using encryption, then they have to break it to get into the network. That takes real time. Bypassing SSID and MAC Filtering takes mere seconds, and makes the network more difficult to work with. In other words, don&#039;t bother disabling SSID braodcast, don&#039;t bother with MAC Filtering. These are *not* security measures and should not be treated as such.</description>
		<content:encoded><![CDATA[<p>Few things:</p>
<p>&gt;It does not make sense to change the name but leave broadcasting on.</p>
<p>Yes, it does. The SSID identifies the network, and leaving broadcasting on lets it show up on a list of networks, like in the XP wireless network list. This makes it easy for people to connect to your network. Since you&#8217;re using WEP/WPA, they still need the password.</p>
<p>&gt;Note its still possible to sniff the SSID, its still send in clear text when a client associates with the router / access point.</p>
<p>The SSID is not sent in just the association packets. The SSID is sent in the clear in *ALL* packets. So it&#8217;s not just possible to sniff the SSID, it&#8217;s trivial.</p>
<p>Disabling SSID broadcast adds no security to your network. None. Zero. At best, it will keep the little old lady next door from seeing it in the list of networks on her computer.</p>
<p>&gt;Its possible to sniff your mac addresses and fake them, donÂ´t rely on this alone.</p>
<p>It&#8217;s not just possible, it&#8217;s trivial. It&#8217;s *one command* on a Linux box. A slight bit trickier on a Windows box, I grant you. MAC filtering adds no real security either.</p>
<p>And the worst thing about both of these is that they make your wireless network *much* harder to administer, for no real security benefit. With SSID Broadcast on and MAC filtering off, you can walk up and hand somebody the password for the network, and they&#8217;ll be able to connect. No issues. You don&#8217;t have to touch a computer. But if you enable both of these, then suddenly you have to log into the router from another machine and get the guy&#8217;s MAC address and add it and tell him the SSID as well as the password.. It&#8217;s a lot more complex. </p>
<p>Simplify. All you need for wireless security is encryption turned on. WPA is enough. If you&#8217;re using encryption, then they have to break it to get into the network. That takes real time. Bypassing SSID and MAC Filtering takes mere seconds, and makes the network more difficult to work with. In other words, don&#8217;t bother disabling SSID braodcast, don&#8217;t bother with MAC Filtering. These are *not* security measures and should not be treated as such.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: brad.clarkston</title>
		<link>http://www.ghacks.net/2005/12/14/how-to-secure-your-wireless-network/#comment-542</link>
		<dc:creator>brad.clarkston</dc:creator>
		<pubDate>Wed, 14 Dec 2005 15:14:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/?p=225#comment-542</guid>
		<description>Nice post.

I work at a small rural ISP that provides wireless broadband coverage using AirSpan WiMax and 99% of those customers have installed a Linksys WiFi router (that&#039;s what we push) as well so I know the pain of having 200+ unsecured wireless customers in a 50 miles radius.

At least I always have a connection around my area .</description>
		<content:encoded><![CDATA[<p>Nice post.</p>
<p>I work at a small rural ISP that provides wireless broadband coverage using AirSpan WiMax and 99% of those customers have installed a Linksys WiFi router (that&#8217;s what we push) as well so I know the pain of having 200+ unsecured wireless customers in a 50 miles radius.</p>
<p>At least I always have a connection around my area .</p>
]]></content:encoded>
	</item>
</channel>
</rss>
