FACE 2 FACE

Combine a number of security measures

Prateek Agrawal

Posted: Monday, Oct 13, 2008 at 0135 hrs IST
Updated: Monday, Oct 13, 2008 at 0135 hrs IST


Font Size

Print

Feedback

Email

Discuss

: Wireless fidelity, a plug-n-play, easy to install, open networking system has become widely common in homes and small businesses. However, due to ignorance, users do not adequately secure these, leaving them vulnerable to unauthorised access. Some of the recent terror attacks have leveraged ‘insecure Wi-Fi networks’ to initiate terror emails and other cyber crimes.

An insecure Wi-Fi network with no password protection is like a house with its door ajar. Unlike a wired network where a hacker has to first physically access the network and then pass through a series of online defence layers like firewall, proxy, etc, in a typical insecure Wi-Fi network, access is easy from a Wi-Fi enabled PDA or laptop within a radius of 80 to 100 feet of the Wi-Fi internet router or the access point.

According to estimates, more than 85-90% of home and small business enterprise-based Wi-Fi networks are either totally insecure or have inadequate security. In India, almost half of the four million broadband subscribers are on Wi-Fi and a significant proportion is vulnerable to malicious attacks.

The best strategy for securing Wi-Fi networks is to combine a number of security measures and ensure that users are aware of security requirements. The wireless access points or routers are at the core of the Wi-Fi networks and come with manufacturer-provided webpages to allow administrators or owners to enter the network addresses and setup security. These webpages are protected by default user name and password, which most owners typically leave unchanged. As a first step, the owners should change these settings immediately.

The second step is to ensure encryption or scrambling of messages sent over the Wi-Fi networks by enabling either wired encryption protocol (WEP) or Wi-Fi protected access (WPA). It is recommended to choose the WPA which is stronger of the two; although, some older network devices may not support this.

For most households and SMEs, WPA security at the Wi-Fi access point is sufficient. This provides a good foundation at no additional cost. However, for households and enterprises situated in crowded residential or office complexes where there could be several Wi-Fi devices, reinforcement by enabling the MAC ID filtering is recommended. This permits access only to computers/devices that contain certain specific MAC IDs or unique physical IDs. MAC IDs could also be faked over a network by sophisticated intruders. Further, enabling Static IP addressing and setting up a fixed IP range at the access point and then...

More from eXpert Bytes

Single Page Format 1 - 2 - Next
Discuss this story on expressindia forums

Post Comments

Comments: (Limit 3,000 characters)
Name
Message
Email ID
Subject
TERMS OF USE:
The views, opinions and comments posted are your, and are not endorsed by this website. You shall be solely responsible for the comment posted here. The website reserves the right to delete, reject, or otherwise remove any views, opinions and comments posted or part thereof. You shall ensure that the comment is not inflammatory, abusive, derogatory, defamatory &/or obscene, or contain pornographic matter and/or does not constitute hate mail, or violate privacy of any person (s) or breach confidentiality or otherwise is illegal, immoral or contrary to public policy. Nor should it contain anything infringing copyright &/or intellectual property rights of any person(s).
I agree to the terms of use.

Comments
» Cyberoam - UTM Firewall
Posted by Samantha on 2008-10-14 16:49:48.755555+05:30
If you have a small company and need an all in one solution that I would look at something like unified threat managment also known as a UTM.Cyberoam firewall is the only UTM firewall that embeds user identity in firewall rule matching criteria, enabling enterprises to configure policies and identify users directly by the username rather than through IP addresses. Cyberoam’s powerful hardware firewall provides stateful and deep packet inspection, access control, user authentication, network and application-level protection.The ICSA-certified Cyberoam firewall is available along with VPN, gateway anti-virus and anti-spyware, gateway anti-spam, intrusion prevention system, content filtering, bandwidth management and multiple link management, providing comprehensive security to small, medium and large enterprises, including remote and branch offices. Cyberoam is a Check Mark Level 5 certified UTM solution.Key Features1.Stateful Inspection Firewall2.Centralized management for multiple security features3.Embeds user identity in rule-matching criteria4.Multiple zone security5.Granular IM, P2P controls6.ICSA certified

Flowers & Cakes DeliveryExpress Classifieds
Post and view free classifieds ad
Express Astrology
Know what's in the stars for you