How secure is wireless MAC filter?

Cooky

Golden Member
Apr 2, 2002
1,408
0
76
Not very secure. It's not too hard to spoof MAC addresses.
JackMDS has a nice writeout about wireless security here
 

nweaver

Diamond Member
Jan 21, 2001
6,813
1
0
use wep, and ignore the "it slows the wireless down" stuff.. It doesn't slow the wireless down enough to matter.

With mac filtering, I can hack your network within seconds of you using it. Use it WITH wep/wpa for enhanced security.
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Originally posted by: nweaver
use wep, and ignore the "it slows the wireless down" stuff.. It doesn't slow the wireless down enough to matter.

With mac filtering, I can hack your network within seconds of you using it. Use it WITH wep/wpa for enhanced security.

True, but wep/mac filtering, non-broadcast SSID will keep out all but the knowledgable/determined (sp?
 

Punisher007

Senior member
Jan 21, 2001
264
0
0
Would anyone recommend getting a wireless firewall for a small business? I'm looking at the Watchguard Firebox X5W, but not sure how secure the WPA/WEP features are? If it's not secure, I will just stick to wired.
 

ScottMac

Moderator<br>Networking<br>Elite member
Mar 19, 2001
5,471
2
0
MAC filtering is not secure at all ... and you don't even really need any tools to spoof someone elses's MAC.

WEP, of any size, is not secure. There are scripts available on many of the Warz boards that can defeat WEP without any real knowledge on the cracker's part.

WPA-PSK (pre-shared key, similar to WEP) CAN be secure, as long as you don't use dictionary words or phrases. Break up "normal" words with numbers or punctiation ... mix upper and lower case characters, and make it as long as possible ... you only have to enter once per machine ... paste it to a notepad file and cut & paste it into the client .... this is not rocket science.

If you're inclined to go the easy / lazy route, remember that if you've used a credit card from your machine, it's still available to an intruder (for weeks, months, years, depending on how you use your machine) if they look in the right places, also keep in mind that any damage done through your connection is (at least) partially your liability.

It's easy enough to protect your connection, there's no reason not to. Even 11 Mbps wireless is faster then the vast majority of Internet connections, even if it's "slowed down" with encryption.

WPA-PSK is easier to implement that MAC filtering. If you wanted to use MAC filters, use WPA-PSK instead ... it's easier and vastly more secure (even if done wrong).

FWIW

Scott
 

skyking

Lifer
Nov 21, 2001
22,220
5,082
146
Originally posted by: Punisher007
Would anyone recommend getting a wireless firewall for a small business? I'm looking at the Watchguard Firebox X5W, but not sure how secure the WPA/WEP features are? If it's not secure, I will just stick to wired.

If you are OK wired now, by all means DON'T implement wireless.
 

JackMDS

Elite Member
Super Moderator
Oct 25, 1999
29,480
387
126
I keep a simple rule.

1. There is level of security that is maintained in a person?s Car (Key, Club. Alarm etc.)
2. There is s a level of security that is maintained in your residence.
3. There is a Level of security that you can maintain with Wireless.

There is No full prove for any.

Most people feel comfortable at a level that is a combination of what is the value of what they are protecting, the neighborhood, and most important their own psychology. I.e. the level of maintained every day Paranoia.

Do you think that it is a coincidence that the TV show Fear Factor is so popular?

Do with the Wireless what you do with your Car, Home, etc.

P.S. A lot of the hoopla of wireless security is a Fashion. I am Not trying to be little the importance of Wireless security, but it easy to see that the majority of the reporters that write these stories do not actually understand what they are writing about.

Yeah you absolutely positively do not want my Bank to conduct their business via 802.11x Wireless.

However who is going to sit for days trying to break your Wireless WPA to steal your the mp3/mpeg files.

:sun:
 

Cooky

Golden Member
Apr 2, 2002
1,408
0
76
who is going to sit for days trying to break your Wireless WPA to steal your the mp3/mpeg files.
Maybe he's one of the Soprano's associates trying to hide from the Feds.
 

SaigonK

Diamond Member
Aug 13, 2001
7,482
3
0
www.robertrivas.com
You need to pusha ton of data to hack WEP, let alone WPA hacking. So dont sweat it out. Using MAC filtering might give you one more small roadblock to someone borrowing your connection but it certainly isnt foolproof as was pointed out previously.

VPN over wireless is the way to go, I wouldnt say dont install wireless, if you have a use for it at work, just make sure it is secure.
I have installed about 17 Cisco units here in this building alone, but we run all connecitons via VPN, aldo we turn on PSPF on the Ap so that iner-client communication through the AP is shut down.

We have a dirty lan that serves out DHCP and nothing else, when a user gets an IP the firewall on our vpn box allows them to just access the vpn box to make a tunnel connection.
 

JackMDS

Elite Member
Super Moderator
Oct 25, 1999
29,480
387
126
Originally posted by: Cooky
who is going to sit for days trying to break your Wireless WPA to steal your the mp3/mpeg files.
Maybe he's one of the Soprano's associates trying to hide from the Feds.
LOL, the sopranos are in New Jersey, he is Canadian.

:sun:
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |