[Log In ] [New Posts] []
Go Back   GotApex? Forums Forums > General Topics > Software, OS, and the Internet
User Name
Password

Reply
 
Thread Tools Search this Thread Display Modes
Old 12-08-2005, 12:31 PM   #1
zero2dash
Commander
 
zero2dash's Avatar
 
Join Date: Dec 2000
Location: Fenton, MO - but I wish I was at the beach. ANY beach.
Posts: 1,367
Send a message via Yahoo to zero2dash
How secure is my wireless network?

Ok, I've google'd and read like mad over the last day and a half getting ideas on securing a wireless network. I took a lot of the info I read and combined it and put it all to work last night.

-Right now I only have 1 device that uses wireless...a Nintendo DS. The DS only supports WEP and not WPA, so I'm stuck with using WEP for now (unless Nintendo does the smart thing and supports WPA soon). Right now since I don't own any DS WiFi games, I have the wireless disabled.

(I have a D-Link DI 524 router.)

I know most average/uneducated wireless users just activate WEP and that's it, but I didn't want to just merely do that (which is somewhat easily crackable from what I've read). Better than nothing though, right?

1. I changed the admin password of the router (but this is more of a router precaution, whether wired or wireless)
2. I activated WEP with a 128bit key; I chose a 13 character alphanumeric key (so it's not random HEX #s or gibberish ASCII chars) that doesn't have anything to do with my home, address, name, family, etc (easily guessed items)
3. I changed the SSID name and disabled the SSID broadcasting
4. I activated MAC filtering/entered the MAC address of my PC (wired) and my Xbox (wired)
5. I disabled DHCP and changed the network IP of the router (from the default 192.168.0.1)
6. I changed the signal strength to 12.5% (which should be enough to cover the area of the house I need)

I also stealthed port 113 (but again, that's more of a router issue, not a wireless security issue).

I don't have any drives being shared on my system at this time, but I plan on using NetBEUI/NetBUI (whatever it's called) when I do because I hear that's a lot more secure than the standard TCP/IP sharing that Windows uses.

Now, I know that someone with who sniffs the air (if they can get a signal, since it's weakened) can get the MAC address and clone it, or get the SSID name. Basically I know there's workarounds for most of the things I've done, but - my thought is that (hopefully) someone will realize there's no easy way to get in and just move on to the next house with a signal. I always use the adage about car alarms...just because you have a car alarm doesn't mean your car won't get broken into. But since you DO have something that is going to make the thief have to do some extra work, they'll probably move along to the next car that doesn't have an alarm.

---

Is there anything else anyone would recommend? (Or do you think this setup is decently safe...*knock on wood*.)

I thought about using WPA when I'm not using the DS and then using WEP when I am, or disabling wireless like I have right now...I'll probably do the latter.

TIA everyone...Jeffbx - network guru, where you at?

Last edited by zero2dash : 12-08-2005 at 12:33 PM.
zero2dash is offline   Reply With Quote
Old 12-08-2005, 01:29 PM   #2
Jeffbx
Fleet Admiral
 
Jeffbx's Avatar
 
Join Date: Mar 2000
Location: Michigan
Posts: 9,390
Send a message via MSN to Jeffbx
Did I hear someone call my name?

OK, question #1 - do you NEED to encrypt your data?

99.99% of all users out there don't have the time/knowledge to crack simple MAC authentication. Yes, it's a trivial thing to do, but it's much faster to move on to an open WAP.

Unless you're on a campus, in an apartment or in some other heavily populated area where you have numerous people within range of your WAP, I say turn on MAC authentication & forget about encryption.

I'd say you're definitely safe to stay with the setup you have now, if you're in a single family home. You could even turn off WEP & you'd still be safe. As I said, as easy as it is to crack, it's much easier for someone to move onto the next WAP.
Jeffbx is offline   Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -7. The time now is 12:16 PM.