Lost Password? No account yet? Sign up! Why bother?
  • Narrow screen resolution
  • Wide screen resolution
  • Auto width resolution
  • Increase font size
  • Decrease font size
  • Default font size

SmallNetBuilder - Small Network Help

  
Home arrow Wireless arrow Wireless How To arrow How To Crack WEP - Part 3: Securing your WLAN
How To Crack WEP - Part 3: Securing your WLAN Print E-mail
Humphrey Cheung   
June 07, 2005

Skill Level 0 Countermeasures - more

Countermeasure 4: Turn it off!

People commonly overlook the simplest way of securing their wireless network - turning off the AP! A simple lamp timer can be used to turn off your AP during the overnight hours when you're not using it. If you have a wireless router, this will mean that your Internet connection will also be disabled, which also isn't such a bad thing.

If you can't or don't want to periodically shut down your Internet connection, you'll have to remember to disable your wireless router's radio manually - if it has this feature. Figure 2 shows a typical wireless disable control. This manual method is more prone to error, however, since it's just one more thing to forget. Perhaps at some point manufacturers will add radio disable to the features that can be scheduled on wireless routers.

Shutting off the radio

Figure 2: Shutting off the radio

Countermeasure 5: MAC Address Filtering

MAC Address filtering is used to control access to your AP by allowing (or denying) access to a list of wireless client MAC addresses you enter. It will prevent an unskilled intruder from connecting to your WLAN, but MAC addresses are easily captured by more skilled attackers and wireless adapter MAC addresses easily changed to match a captured address.

MAC Address filtering on an older USR 8011 AP

Figure 3: MAC Address filtering on an older USR 8011 AP
(click image to enlarge)

Countermeasure 6: Lower the transmit power

While only a few consumer APs have this feature, lowering your transmit power can help limit intentional and accidental unauthorized connections. But with the increased sensitivity of wireless cards that even unskilled users can purchase, it may not be worth the bother - especially if you're trying to prevent unwanted connections in an apartment building or dorm.

Most skilled attackers typically use high-gain antennas, which allow them to detect very low signal levels and effectively offset this countermeasure.



Tags: Hacking, How To, WEP, WiFi,

Related Articles:

The Feds can own your WLAN too
How To: Setting up FreeRADIUS for WPA & WPA2 Enterprise - Part 1
"One-Touch" Wireless Security - Buffalo Technology's AOSS vs. Linksys'
Making a little Magic on your Network
How To Crack WEP - Part 1: Setup & Network Recon
 

Most Read

 
 

Over At The Forums

Are Cat6 and Cat5e not perfectly compatible?
So, I was rearranging some of my network today (notably moving my router to a different room) and I noticed something very odd. When I...

Captive portal for security
I've read about this in the previous Bed & Breakfast thread. Our company wants to get wireless going on one of the floors. There is only personal...

D-Link DNS-323 Mysteries
Hello folks. I'm having issues with my Nas and looking for some thoughts. 1. The 323 gets recognised by Vista as a network device but...

Gigabit Network Help!
I have a gigabit NAS (D-link 323) that I have connected to a D-Link DGS-1005D gigabit switch. I then have my desktop connected to...

Synology DS-209+ review up!!
Looks real good. Now Netgear needs to play catchup and dump that old Infrant CPU for something more modern and powerful!! http://www.trustedreviews.com/networ...ion-DS-209-/p1

Slideshows

NETGEAR ReadyNAS Pro Western Digital ShareSpace QNAP TS-509 Pro D-Link DNS-343 4-Bay Network Storage Enclosure Thecus N3200 RAID 5 NAS D-Link DIR-628 RangeBooster N Dual Band Router More

Win This!

Enter to Win!

You could win a Trendnet TEW-633GR Wireless N Gigabit Router and two TEW-621PC 300Mbps Wireless N-Draft PC Cards

Learn How!

 

Ldr:0.00166392326355, Rct:0.00572299957275, Sky:0.00743412971497, Tlink:0.108170032501, TopPG:0.108247041702, GQV:0.108384132385 seconds to load.