LinuxSecurity.com
Share your story
The central voice for Linux and Open Source security news
Home News Topics Advisories HOWTOs Features Newsletters About Register

Welcome!
Sign up!
EnGarde Community
Login
Polls
What is the most important Linux security technology?
 
Advisories
Community
Linux Events
Linux User Groups
Link to Us
Security Center
Book Reviews
Security Dictionary
Security Tips
SELinux
White Papers
Featured Blogs
All About Linux
DanWalsh LiveJournal
Securitydistro
Latest Newsletters
Linux Advisory Watch: February 5th, 2010
Linux Security Week: February 1st, 2010
Subscribe
LinuxSecurity Newsletters
E-mail:
Choose Lists:
About our Newsletters
RSS Feeds
Get the LinuxSecurity news you want faster with RSS
Powered By

  
When it comes to wireless security, good enough is simply not good Print E-mail
User Rating:      How can I rate this item?
Source: infosecnews.com - Posted by Vincenzo Ciaglia   
Security As security threats increase in quantity and complexity, assuring business continuity means that corporations need to aggressively and proactively protect the entire network infrastructure. . . . As security threats increase in quantity and complexity, assuring business continuity means that corporations need to aggressively and proactively protect the entire network infrastructure.

Enterprises will continue to invest in purpose-built, comprehensive security products to defend their wired network, but even more importantly, the enterprise must protect the more vulnerable wireless portion of their networks. Because wireless networks utilize a transport mechanism (air) that can be hacked easily, and users can move from location to location, these networks require even more stringent and specific security solutions. The price the enterprise could pay for deploying "good enough" security in their wireless network includes loss of revenue, loss of reputation, loss of productivity, and in some cases loss of market capitalization.

And yet, enterprises that deploy wireless networks are being told that wireless networks do not need the purpose-built security products such as vulnerability assessment, network admission, intrusion prevention, patch management, firewalls and virus outbreak control that they rely on to secure their wired networks. Enterprises are being told by wireless access point and switch vendors that they can simply rely on RF management and "security features" that have been bolted onto the AP or WLAN switch to assure that their wireless infrastructure is secure. RF management and 802.1x alone does not offer assurance of a stringent network admission process that includes authentication, authorization, vulnerability assessment and patch updating. Authentication using WPA802.1x does not do anything to stop a vulnerable or infected device from getting onto the network. RF management is a limited solution at best and can't pattern match to look for virus signatures or protocol anomalies. The switch vendors claim of "good enough" security using a WLAN switch will not suffice when a worm proliferates throughout the entire network as a result of infected device being admitted onto the wireless part of the network.

Read this full article at infosecnews.com

Only registered users can write comments.
Please login or register.

Powered by AkoComment!

 
< Prev   Next >
    
Partner:

 

Latest Features
Hacks From Pax: Network Server Monitoring With Nmap
Review: Mod-Security 2.5 by Magnus Mischel
Review: Googling Security: How Much Does Google Know About You
A Secure Nagios Server
Never Installed a Firewall on Ubuntu? Try Firestarter
Review: Hacking Exposed Linux, Third Edition
Security Features of Firefox 3.0
Yesterday's Edition
Mozilla Removes Two Malicious Firefox Add-Ons
When is a 0day not a 0day? Fake OpenSSh exploit, again

QuickLinks: Comunity , HOWTOs , Blogs , Features , Book Reviews , Networking ,
  Security Projects ,   Latest News ,  Newsletters ,  SELinux ,  Privacy ,  Home,
 Hardening ,   About Us,   Advertise,   Legal Notice,   RSS,   Guardian Digital

(c)Copyright 2010 Guardian Digital, Inc. All rights reserved.