Know Your Wireless Network:
Are you Secure?


Sure, having a wireless network is a great investment. Not only can you network computers without messy wires, but you can also use a laptop or smart phone to connect to the internet from anywhere in the vicinity of the wireless signal. The catch? Anyone else who is close by can use your wireless signal too. If not properly secure your wireless network can leave you vulnerable to identity theft, viruses, etc.

While wireless networks can be dangerous, you can prevent many attacks by following a few easy tips.

1. Change default Admin Passwords and Logon Names
At the core of most Wi-Fi home networks is an access point or router. To help users manage these pieces of equipment, manufacturers provide Web pages that allow owners to access the hardware in order to perform administrative tasks. These Web tools are protected with a login screen (username and password) so that only the rightful owner can gain access. However, for any given piece of equipment, the login names and passwords provided are simple and very well-known to hackers on the Internet. Change these settings immediately.

2. Turn on (Compatible) Encryption
All Wi-Fi equipment supports some form of "encryption." Encryption technology scrambles messages sent over wireless networks so that they cannot be easily deciphered. Several encryption technologies exist for Wi-Fi today. Naturally you will want to pick the strongest form of encryption that works with your wireless network. To function, though, all Wi-Fi devices on your LAN must share the identical encryption settings. Therefore you may need to find a "lowest common denominator" setting.

3. Change the Default SSID
Access points and routers all use a network name called the "SSID". Manufacturers normally ship their products with the same SSID set. For example, the SSID for Linksys devices is normally "linksys." True, knowing the SSID does not by itself allow anyone to break into your network, but it is a start. More importantly, when someone finds a default SSID, they quickly identify that it is a poorly configured network and are much more likely to attack it. Change the default SSID immediately when configuring your LAN.

4. Enable MAC Address Filtering
Each piece of Wi-Fi hardware possesses a unique identifier called the "physical address" or "MAC address." Access points and routers keep track of the MAC addresses of all devices that connect to them. Most access points offer the owner an option to key in the MAC addresses of their home equipment which allows them to restrict the network to only allow connections from certain devices. While doing this is recommended, keep in mind this feature is not impenetrable. Hacker software programs can fake MAC addresses easily.

5. Disable SSID Broadcast
In Wi-Fi networking, the access point or router typically broadcasts the network name (SSID) over the air at regular intervals. This feature was designed for businesses and mobile hotspots where Wi-Fi clients may come and go. In the home, this feature is unnecessary, and it increases the likelihood an unwelcome neighbor or hacker will try to log in to your home network. Fortunately, most Wi-Fi access points allow the SSID broadcast feature to be disabled by the network administrator.

6. Assign Static IP Addresses to Devices
Most home networks gravitate toward using dynamic IP addresses. DHCP technology is indeed quick and easy to set up. Unfortunately, this convenience also works to the advantage of network attackers, who can easily obtain valid IP addresses from a network's DHCP pool. Turn off DHCP on the router or access point, set a fixed IP address range, then set each connected device to match. Use a private IP range (like 10.0.0.x) to prevent computers from being directly reached from the Internet.

7. Position the Router or Access Point Safely
Wi-Fi signals normally reach to the exterior of a home. A small amount of "leakage" outdoors is not a problem, but the further this signal reaches, the easier it is for others to detect and exploit. Wi-Fi signals often reach across streets and through neighboring homes. When installing a wireless home network, the position of the access point or router determines it's reach. Try to position these devices near the center of the home rather than near windows to minimize this leakage.

Configure Your Wi-Fi Network
CALL ONSITE TODAY
856-626-3349

 

856.626.3349
info@onsitecs.com

about us | services | support | news | contact | legal
2009 © Onsite Computer Systems




IMPORTANT REMINDERS
  • Backup Critical Data
  • Update Anti-Virus Software
  • Run Cleanup Script
* If you are not sure how to take care of the important tasks listed above or are not sure your system is up to date.

CALL ONSITE a
t 856-626-3349