No, "it" isn't the same it you have been seeing on the eBay commercial. It is 802.11i.
Requires Free Membership to View
So why all of the push for 802.11i when it appears that almost everyone has solved the security issues associated with WLAN technologies? There are several reasons. First and foremost is that there needed to be a higher level of encryption than TKIP for government certification and AES is seen as compliant for meeting the needs of the Federal Information Processing Standards (FIPS) 140-2 specification. Secondly, to date, TKIP has not been broken (according to my research), but there are many who believe that TKIP will eventually be compromised. In addition to the FIPS specification, AES has been adopted by the National Institute of Standards and Technology (NIST) as replacement for DES. In terms of security, when the federal government adopts a security standard, you can bet that it is the highest level of security available.
Upgrading to 802.11i
Customers expect vendors to provide the highest level of security; therefore all of the vendors are moving towards or currently already support the 802.11i standard. Vendors are fine with developing standards that can influence their bottom line. Most customers do not realize that an upgrade to 802.11i compliance equipment is an expensive endeavor as there may be a significant investment in hardware required to support the new standard.
|
||||
So, 802.11i is out there, it is being offered by vendors and it is at this point the most secure encryption solution offered in the market. However, this does not mean that you have to run out and deploy an 802.11i solution right away. If you do decide to deploy, do your homework to fully understand the implications of the architecture and how it can be designed, installed and managed moving forward. You can bet that after a deep dive, WPA will look pretty good.
Until next time, stay secure.
Robbie Harrell (CCIE#3873) is the National Practice Lead for Advanced Infrastructure Solutions for SBC Communications. He has over ten years of experience providing strategic, business and technical consulting services. Robbie resides in Atlanta, and is a graduate of Clemson University. His background includes positions as a Principal Architect at International Network Services, Lucent, Frontway and Callisma.
This was first published in November 2005
Network Management Strategies for the CIO

Join the conversationComment
Share
Comments
Results
Contribute to the conversation