Advertisement
Promo

Network management Toolkit in association with http://ad.doubleclick.net/clk;217618582;14453422;e?http://www.citrix.com/lang/English/lp/lp_1688615.asp

Optimising and securing your network

Brian Nadel ZDNet US

Published: 06 Feb 2003

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Because wireless signals often travel beyond the physical confines of your home or office, you must take extra precautions to secure your network. Otherwise, any hacker on the street with a suitable radio can gain access to your network. In addition to the steps listed below, make sure you check and update your firewall software (check here for the latest firewall reviews.)

Keep out

The first line of defence is the SSID, which can be up to 32 characters in length. Make sure you change this to a unique network name right away. Leaving the factory-default setting in place -- typically 'wireless', 'any' , or the manufacturer's name -- is like leaving your house's front door open.

You guard your network's 'back door' by setting the WEP encryption on the AP and the clients. Although the AP can create and distribute a new WEP key for each session, the network still must broadcast the key through the air, which can compromise security. Manufacturers promise an update to the security protocol in the near future, but in the meantime we suggest you enter a key manually on both the AP and the client. Unfortunately, this means you must enter 26 letters and numbers for a 128-bit key. You should also choose a random sequence of letters and numbers, and then change it frequently.


Wireless Settings configuration screen for the 3Com OfficeConnect Wireless Cable/DSL Gateway.

What, me worry?

Still worried about security? You could set the EAP on the access point to authenticate only those clients with a smart card or other high-level security device -- if you use one of the few notebooks that support them. Alternatively, you can use a proprietary security system to lock the network's windows as well as its doors. One of our favourites is Kerberos, which was developed at MIT and named for Greek mythology's three-headed guard dog at the gates of Hades. It works with all major operating systems except Mac; it sends out keys in encrypted form, so snoopers would have to work hard to break in.

You can also keep evildoers out by turning off DHCP. Instead, give an exact IP address or range of IP addresses for your computers. Theoretically, the hacker will be stuck on the outside of your network. You can also set the AP to allow only a predetermined list of MAC addresses to connect or to have full network access.

With so many different parameters to keep track of, we suggest you write them all down. If you're at home, put the AP's IP address, SSID, WEP level and other details on a card, then tape it on the back of the AP or keep it with the documentation. Office users should keep all the network settings in a secure location.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
46 out of 78 people found this useful


New Products

Dell Adamo XPS: a first look

Dell Adamo XPS: a first look

More details have finally emerged on Dell's ultra-thin, ultra-stylish Adamo XPS. Check out our preview and image gallery.

iPhone 3G S: a first look

iPhone 3G S: a first look

Apple's third-generation iPhone will be available on 19 June. Here are the highlights from its unveiling at the WWDC 2009 keynote.

Dell Adamo: a first look

Dell Adamo: a first look

Dell's much-anticipated Adamo, a high-end 'luxury' notebook, has finally been announced. Here's a hands-on look at a pre-production version.

View all Previews

Related Citrix Resources

Achieving the lowest server virtualization TCO

Consolidation through server virtualization is a powerful agent for datacenter change, but...

Achieving the lowest server virtualization Total Cost of Ownership

Consolidation through server virtualization is a powerful agent for datacenter change, but...

Citrix XenDesktop: The Best Desktop Delivery System For Today's Demanding Business Needs

Whether you're considering your first virtual desktop solution or trying to salvage an existing...

Desktop Virtualization: A buyer's checklist

Desktop virtualization should do more than just move desktop management to the datacenter—its real...

Five reasons why you need Citrix Essentials for Hyper-V now

This paper explores common challenges associated with server virtualization deployments and the...

See All White Papers

Video icon

Video

On The Road Blog

Jabra Stone Bluetooth headset

I don’t get on very well with Bluetooth headsets. But it is not a prejudice against them. I don’t get on well with those flat, saucer-like in-ear headphones either. My ears are just... More

Post a comment

Ion pleases the eye and kills off the...

The netbook has been a rapidly evolving beast. The idea was initially unveiled about four years ago by the OLPC initiative, who wanted to bring out a cheap educational tool for the... More

1 comment

BlackBerry developer chief demos new s...

Late last week I got to share milk and cookies with Mike Kirkup who is RIM’s director of developer relations. Mike was passing through London on the European leg of his 'press the flesh... More

1 comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters