Firewall Wizards mailing list archives

Re: Wireless


From: Paul Robertson <proberts () patriot net>
Date: Fri, 9 Aug 2002 15:31:28 -0400 (EDT)

On Fri, 9 Aug 2002, John McDermott wrote:

So what is the Best Practice approach to securing a wireless subnet? 
Given a WAP and n known cards, what is the best way to deal with MAC 
spoofing, wandering unauthorized users, etc. to prevent access to all 
lan resources for unauthorized users?

Treat it like the Internet and a VPN- encrypt everything going to any 
node, put a layer 3 device between the WAP and the wireline/fiber network, 
put PC firewalls on the PC nodes, and have the layer 3 device do 
strong authentication and decryption for allowed users to 
selected internal resources.

Paul
-----------------------------------------------------------------------------
Paul D. Robertson      "My statements in this message are personal opinions
proberts () patriot net      which may have no basis whatsoever in fact."
probertson () trusecure com Director of Risk Assessment TruSecure Corporation

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: