logo       

Re: Sharing AP - Guest and Internal: msg#00063

security.wireless

Subject: Re: Sharing AP - Guest and Internal

The wired leg of the AP goes to a port on my existing Layer 2 switch .
There is nothing special about this port. Other wired client desktops
also connect to other ports of this VLAN . I am not planning to have
any additional VLAN configuration done because I have two SSIDs
instead of one.

Am I missing something here ? Do I need to do something regarding VLAN
on the wired switch to get the wireless security right.

On 5/18/07, Cedric Blancher
<blancher-cPThYx3uDionEikN29/hQkZa+K1vlBrA@xxxxxxxxxxxxxxxx> wrote:
Le vendredi 18 mai 2007 à 13:21 +0530, saudi sans a écrit :
> First , is this technically feasible.

Yes, using RADIUS attributes to provide VLAN assignment on
authentification.

> Second is this secure.

Depends on the trust you have in VLANs

> Third, without additional software/hardware investment is there a way
> to improve security ?

There's no additional investment for this. Security depends on your EAP
method implementation and VLAN configuration.


--
http://sid.rstack.org/
PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE
>> Hi! I'm your friendly neighbourhood signature virus.
>> Copy me to your signature file and help me spread!






<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise