Home > Networking Tips > Wide Area Networks > VPNs for wireless devices
Networking Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

WIDE AREA NETWORKS

VPNs for wireless devices


Cyrus Peikari and Seth Fogie
07.07.2005
Rating: -3.10- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


One of the benefits of the eventual conversion to IPv6 from IPv4 is the increase in available addresses. All these addresses will make it that much easier to connect wireless devices to the network. The security of those devices is going to become a major concern in the next few years. Here is an article from Informit that that discusses issues combining VPNs for wireless devices and WEP.


A VPN is a virtual, encrypted network built on top of an existing network. This is also known as tunneling, because the encrypted data stream is set up and maintained within a normal, unencrypted connection. A VPN extends the safe internal network out to the remote user. Therefore, the remote wireless user exists in both networks at the same time. The wireless network remains available, but a VPN tunnel is created to connect the remote client to the internal network, thus making all the resources of the internal network available.

VPNs and firewalls are often integrated into one appliance or software package. A firewall can be set up to completely block all incoming requests, with the exception of authorized VPN clients. This will not only ensure a strong measure of security at the access point, but provide an additional measure of security to WLAN users and their data.

The encryption used by most implementations of WEP is flawed. A hacker with a laptop and a Pringles can for an antenna can sit within the WLAN's radiation zone and capture enough data to crack the WEP password. By having this password, the hacker can then set up his computer to capture all data traveling through the air. Since he has the encryption password, he can decipher all the WEP-protected data and "see" the information. Email, documents, and passwords can all be gleaned this way.

However, if you use VPN encryption in addition to (or instead of ) WEP encryption, a hacker would have to decipher the data twice. The first layer is the crackable WEP encryption and the second layer is the robust VPN encryption. Because a hacker cannot easily reproduce the VPN's pass phrase, certificate, or smartcard key, the success rate at cracking the VPN traffic will be very low.

While using both a VPN and WEP is definitely to your advantage, there's a major downside. The problem arises due to the additional processing that encrypting and deciphering data requires. Using WEP with VPN on a properly configured firewall/access point will impact transmission speed and throughput. In other words, it would take 10 minutes to send a file over a VPN with WEP enabled, but it would only take 2 minutes without encryption. This impact can have serious consequences to network connectivity and may all but eliminate the end user's enthusiasm for the wireless connection.

In addition, using VPN over wireless requires that client software be installed on every user's device. This requirement creates a few issues for end users. For example, most VPN software is written for the Windows platform. This means that Macs, *nix-based computers, and palmtop computers may not be able to connect to the WLAN. While this may not be an issue for most home and small businesses, it could have a serious impact on large or rapidly growing corporations.


Read more about WLAN security at Informit.


Rate this Tip
To rate tips, you must be a member of SearchNetworking.com.
Register now to start rating these tips. Log in if you are already a member.




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Wide Area Networks
WAN optimization: A market update
Remote Desktop troubleshooting
How the NetFlow protocol monitors your WAN
Network design: Five ways to lower your costs
Remote office backup, archiving and disaster recovery for networking pros
Troubleshooting WAN performance issues
Cisco CCIP MPLS certification: Introduction
Distribution of labels -- Cisco CCIP MPLS certification: Lesson 3
Label imposition -- Cisco CCIP MPLS certification: Lesson 4
Configuring MPLS -- Cisco CCIP MPLS certification: Lesson 5

Remote Offices
Expand Networks acquires software-based WAN optimization vendor
Network optimization from Cisco, Blue Coat helps deliver Olympic video
Upgrading distributed networks
WAAS accelerates collaboration, increases revenue at engineering firm
Remote Desktop troubleshooting
Configure branch office VLANs to route across WAN
Cisco and new ISR aggressively target branch office
Remote access still faces hurdles of security, disaster recovery
Remote office backup, archiving and disaster recovery for networking pros
Branch offices get security, services boost

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
high-speed dialup  (SearchNetworking.com)
IPLC  (SearchNetworking.com)
K56flex  (SearchNetworking.com)
modem doubling  (SearchNetworking.com)
telecenter  (SearchNetworking.com)
terbo  (SearchNetworking.com)
V.xx  (SearchNetworking.com)
virtual systems management  (SearchNetworking.com)
visitor-based networking  (SearchNetworking.com)
WAN interface card  (SearchNetworking.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Networking Solutions for Business
IT Management Solutions and Services Directory.
HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersNetworking Product Trials
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2000 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts