Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Wireless for Business - Security

Status
Not open for further replies.

SQLScholar

Programmer
Aug 21, 2002
2,127
GB
Hey all,

We are looking to implement wireless at one of our sites.

Now its all positives - other that security.

I understand that WPA/WEP can all be quite easily cracked.

Is there any way to set up a secure wireless network that we know people cannot listen to our data, or use our internet connection.

As we are in financial services we have to be confident that data cannot be pinched.

Any advice appreciated.

Dan

----------------------------------------
Be who you are and say what you feel, because those who mind don't matter and those who matter don't mind - Dr. Seuss

Computer Science is no more about computers than astronomy is about telescopes - EW Dijkstra
----------------------------------------
 
Hello Dan,

not sure if you have moved forward with this, but I am looking at doing the same thing here and security is a big concerm for us.
Here is what we are contemplating to do:
We are going with two RAD Airmux-200 or Ceragon Networks FibeAir 4800 wireless radio bridges. They are AES128 encrypted. At each end, we hook them up to one Cisco 1841 router with IP Secure IOS and we run a VPN tunnel in between them.

Hope this helps.
Alexandre.
 
It was decided we went with WPA2 - as it is quite difficult to crack.

Personally i would have favoured a radius server also....

----------------------------------------
Be who you are and say what you feel, because those who mind don't matter and those who matter don't mind - Dr. Seuss

Computer Science is no more about computers than astronomy is about telescopes - EW Dijkstra
----------------------------------------
 
Personally i would have favoured a radius server also....

Then why didn't you do this also? It's not much more work and allows much greater control over who can access the network, plus allows you to deny access to users without having to change the WPA2 key on all your wireless machines. There is also no Pre-Shared-Key to configure (and guess...) so is much more secure from that point as well.

There are various guides available and even searching on here for WPA & IAS or Radius should give some good results.

Andy
 
errr... becuase its not strictly my job, and the people whose job it is out voted me....

I am a developer :)

----------------------------------------
Be who you are and say what you feel, because those who mind don't matter and those who matter don't mind - Dr. Seuss

Computer Science is no more about computers than astronomy is about telescopes - EW Dijkstra
----------------------------------------
 
errr... becuase its not strictly my job, and the people whose job it is out voted me....

Probably says a bit about the competence of the Networking guys..... :(

Andy
 
But Andy...isn't it very true that in most case those people with less technical knowledge are in charge!

In my company, I am, in my business card, a Network Engineer. But my Director directs network traffic and my manager manages my projects...I am just a person that they can look over my shoulder and say "Is the network up?" or "Are you done yet?"

Sad but true!
 
But Andy...isn't it very true that in most case those people with less technical knowledge are in charge!

In my company, I am, in my business card, a Network Engineer. But my Director directs network traffic and my manager manages my projects...I am just a person that they can look over my shoulder and say "Is the network up?" or "Are you done yet?"

Sad but true!{/quote]

Yep very true, if they get hacked and the fingers start getting pointied then as long as the trail leads back to them.....

Andy
 
A good manager does not have to be the expert in the use of every technology. They understand how to ask questions, review options with their staff, and make decisions that fit both the business, the staff, and the use of technology. In many cases, the truely technical person is challenged to explain the why's and what's to a less technical person, and they have a very difficult time making a business case for their recommendations.

Dan
 
Dan:

I have tear in my eyes when I saw what you said about

"In many cases, the truely technical person is challenged to explain the why's and what's to a less technical person."

I am doing this everyday. My manager searched the web for every subject and make decision based on what he found with no technical judgement with the decision.....

I think we get into a wrong direction with this posting..Thank you for listening.
 
I didnt say that - it was Andy....

----------------------------------------
Be who you are and say what you feel, because those who mind don't matter and those who matter don't mind - Dr. Seuss

Computer Science is no more about computers than astronomy is about telescopes - EW Dijkstra
----------------------------------------
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top