|
|
||||||||||||||||||||||||||||||||||
A Guide to Wireless Security BasicsSecurity in Wireless Home Entertainment Systems
|
|
|||||||||||||||||||||||||||||||||
|
|
||||||||||||||||||||||||||||||||||
There often comes a time when you will want to set up a wireless media player or put in place a wireless internet-enabled entertainment system because of the various advantageous associated with wireless connectivity. In particular, there is the added convenience and flexibility of doing away with long interconnecting cables. At the same time, you do not want hackers from tapping into your home network to steal personal information or damage your system. Unfortunately, the level of security associated with wireless networks is inherently less than that of wired systems. Wired-LANs are somewhat protected by the natural access constraint of their structure - in particular if all parts of a wired network resides inside a building protected from unauthorized access. Wireless LANs, being over radio, do not have the same physical access constraints. This renders wireless LANs more vulnerable to tampering than wired networks. For this purpose, a number of security protocols were devised to provide an acceptable level of wireless security when transmitting data over radio, by encrypting the data contents over the wireless link. All wireless network gear - whether this being a home router, a wireless media player, etc., supports various wireless security protocols intended to make it more difficult for network hackers to tap into your home network. We are saying 'difficult' rather than 'impossible' simply because for the experienced hacker, tapping into someone else network is not impossible; it is true that it can be time-consuming but... Wireless Security Basics: WEP and WPA/WPA2 EncryptionsWEPVirtually, all wireless equipment supports a wireless security feature referred to as WEP bit encryption. WEP - short for 'Wired Equivalent Privacy', is a data encryption technique for wireless local area networks (WLAN), defined in the 802.11 standard. WEP is the original standard for wireless security. It was designed to supposedly provide the 'same' level of security as that of wired local area networks (LANs) by scrambling the information passed between wireless devices. A hacker attempting to tap into your WEP-enabled wireless network would find only meaningless bits. However, the wireless access point and the client device would share an encryption key that is used to scramble and descramble the encrypted information. There are various levels of WEP encryption - depending on the number of bits within the encryption key; the latter can be 64-bit, 128-bit or even 256-bit. The higher the number of bits, the more difficult it will be to decipher, but actual data throughput will suffer as there is more payload for the same amount of data. One should be aware that although WEP do provide a significant level of wireless security - especially at 128-bit and 256-bit encryption, nevertheless it is not 100% secure. There are a number of open source utilities that hackers can use to break a WEP encrypted network in minutes. In other words, if a hacker can receive packets on a WEP protected network, it is only a matter of time till the WEP encryption is cracked. At the same time, it is a fact that while WEP is not perfect, yet with so many unprotected networks, simply having it enabled is often enough to send a hacker away to search for an easier target. WPA, RSN, and WPA2IntroductionWi-Fi Protected Access - or WPA, is an enhanced encryption technique created by the Wi-Fi Alliance to provide improved wireless security over WEP. It is an early version of the 802.11i standard rectified by the IEEE in June 2004; the latter defines the security mechanism for wireless networks after it was shown that WEP has severe wireless security weaknesses. WPA was mainly designed as an intermediate attempt to provide improvement to WEP by implementing in-the-field firmware upgrades to existing 802.11 gear. WPA covers a subset of the defined security mechanism in the final 802.11i standard. WPA was followed by a full implementation of the IEEE 802.11i with the introduction of the WPA2; this is based on the concept of a Robust Security Network or RSN. In RSN based systems, wireless devices need to support additional security capabilities. A fully compliant RSN network is incompatible with existing WEP equipment, though in the transitional period, WEP equipment will still be supported. WPAWPA employs authentication via user ID and password and uses more sophisticated techniques to protect data passing over a wireless link. It distributes different keys to each user; however, it can also be used in a less secure 'pre-shared key' (PSK) mode, where every user is given the same pass-phrase. The PSK can be anything using an 8 to 63 character passphrase. It may also be entered as a 64 character hexadecimal string. Weak PSK passphrases can be broken fairly easy by experienced hackers using easily available programs. It is therefore essential to select a 'good' difficult-to-break passphrase, or preferably enter a full 64-character hexadecimal key for improved wireless security. WPA makes use of a Temporal Key Integrity Protocol or TKIP, to constantly change the encryption key. This dynamically changing of keys makes the WPA/TKIP solution more difficult for a hacker to break the key.
WPA2WPA2 is the Wi-Fi Alliance branded version of the final 802.11i standard. The primary enhancement over WPA is the inclusion of the AES block cipher and the Counter-Mode/CBC MAC Protocol (or CCMP encryption protocol) as mandatory. It is this that provides for a stronger, scalable wireless security solution. Instead, WEP and WPA use the RC4 stream cipher, and while WPA can be implemented through a firmware upgrade to a WEP device, WPA2 would require a hardware upgrade as well. RC4 stream cipher makes use of a 128-bit key and a 48-bit initialization vector (IV). However, one major improvement in WPA over WEP is in the handling of the encryption key. Whereas WEP uses the same key, WPA makes use of a temporary key - thanks to the use of TKIP, thus making it more difficult for a hacker to break the system. AES-CCMP introduces a higher level of security than RC4-based systems by providing protection for the MAC protocol data unit (MPDU) and parts of the 802.11 MAC headers. This protects even more of the data packet from eavesdropping and tampering. The CCMP encryption protocol used in AES is equivalent to TKIP in WPA. RSN based solutions - like WPA2, defines a hierarchy of limited life keys, similar to TKIP. And like TKIP, master keys are not used directly in CCMP, but are instead used to derive other keys. The end result: WPA2 encryption is much harder to break than WPA even though the latter already provides significant wireless security improvements over WEP-based devices. WPS - Wireless Security Configuration Made Simple!Many home users who know little of wireless security often feel intimidated at the thought of configuring security on their home network and associated connected wireless devices. This is due to the different security options often supported by Wi-Fi certified gear. For this purpose, in January 2007, the Wi-Fi Alliance officially launched the Wi-Fi Protected Setup, or WPS protocol, to provide a standard that simplifies the establishment of a secure wireless home network. It is also for this reason that the WPS protocol was originally referred to as 'Wi-Fi Simple Configuration'. WPS emphasis is placed on a user-friendly setup while ensuring security. In order to achieve its objective, the WPS protocol defines three types of devices in the network: Registrar: A device with the authority to issue and revoke credentials to a network. In a typical home application, this is often integrated into the Wireless Access Point or AP, and takes the form of a wireless router with integrated AP and Ethernet switch. Enrollee: The device that is seeking to join the wireless network. Authenticator: This is the AP functioning as a proxy between a Registrar and an Enrollee. It is not the scope of this article to explain how these devices inter-operate in a WPS scenario. However knowing of their existence will help you better understand how WPS manages to achieve its goal of user usability while ensuring network security. Usability is ensured thanks to four simple setup modes - or possible setup choices as defined by WPS - that provide the user with a simple way of adding a new device to a secure home network. These setup options are:
Wireless Security is preserved as in each of these four possible setup modes, the WPS protocol requires that exchange of security information between the wireless device seeking to join the network and the network registrar or AP, is triggered only by a specific user action. In other words, once device identification takes place at both ends of the wireless link, exchange of security information between the two requires a human trigger to initiate the actual setup session. Basic Steps in Securing a Wireless NetworkWhat follows are just a few simple basic steps in wireless security - listed in order of importance - you can take to help enhance the security of your wireless networking activity.
The following wireless security measures - while ineffective against determined experienced hackers - may still serve a useful purpose against the majority of inexperienced opportunistic users. Furthermore, these may also force experienced hacker to move elsewhere and find an easier target!
At the same time, it is important to keep in mind that hiding the SSID, or enabling MAC filtering alone does not provide sufficient wireless security in that it will not prevent anyone from reading the data transmitted over your wireless network, only encryption will do that. |
Wireless Home Entertainment: System Guides & Product Reviews
Recommended Technical Guides The Smart TV Guide: Smart TV promises a whole new experience in the world of TV entertainment. But what exactly is smart TV? Is it really more than just a PC experience over a big screen? Discover more in this guide to smart TV.
A Practical Guide to Wireless Headphones and Dolby Headphone technology
Surround Sound Formats Speaker Placement in Multi-Channel
Audio The HDMI Cable Guide TV Viewing Distance
Contrast Ratio - Playing with Numbers!
Feel the Shake! HDTV Formats Explained
Reference books for your home networking
Wireless All in One This is an indispensible guide written by a team of technical authors that addresses everything from hardware security to linking your TV, computers, PDAs, and sound systems to wireless network.
Home Networking Demystified A step-by-step guide to designing your network, from component selection, wiring installation, Internet and PC network connectivity, wireless security measures, to troubleshooting.
Wireless Home Networking Fully updated for Windows 7, this book provides you with everything you need to know to plan, install, and use a wireless network in your home - from the basics to security issues and resource sharing.
Featured wireless media players, networked BD players, Internet-enabled HTiBs Wireless Media Players Apple TV MC572LL/A (2010) The new Apple TV is more compact and much cheaper, and comes with an updated list of Internet services apart from iTunes and Netflix. You can also stream media files (music, photos and movies) from your PC on your home theater system. Roku XD|S 1080p Video Streaming Player This is an upgraded version of the original Roku video box and that let you stream video-on-demand content via the Web from Netflix, Amazon and much more.
TiVo TCD746320 Premiere DVR The new TiVo is not just the typical wireless media player with the capability to stream digital media content direct from Netflix, Amazon video-on-demand and Blockbuster, but it is also a cable box that record up to 45hours of your favorite HD programming over its 320GB internal hard disk.
Networked Blu-ray Disc Players LG BD 570 Network Blu-ray Disc Player The new LG BD player is an updated version of the BD370 LG player we saw during 2009. It comes with LG's NetCast Entertainment Access - meaning that it supports a most comprehensive list of Internet streaming services; and this apart from DLNA support and solid Blu-ray playback at a most affordable price.
Samsung
BD-C6900 3D 1080p
Blu-ray Disc Player Internet-Enabled HTiB Solutions
Sony BDV-HZ970W 3D compatible Blu-ray Player Home Entertainment System This 1000 watt Sony 5.1 channel surround sound HTiB is Wi-Fi enabled, and comes with a 3D Blu-ray Disc playback, BRAVIA Internet Video, wireless rear speakers, and HDMI repeater with 3D pass-thru for simplified HD audio and video signal transfer. Samsung HT-C6900W Blu-Ray Home Theater System The Samsung HT-C6900W home theater system is capable of delivering 1000W of total audio power over a 5.1 speaker set-up. It includes a Blu-ray player with 3D support and built-in Wi-Fi, Internet multimedia streaming using the latest Samsung Apps, DLNA support and wireless surround speakers. For the full range of wireless media players available at amazon, please |
|||||||||||||||||||||||||||||||||
|
|
||||||||||||||||||||||||||||||||||
|
|
||||||||||||||||||||||||||||||||||
|
|
|
|||||||||||||||||||||||||||||||||
|
HOME |
About Me |
Site Content |
Terms of Use / Disclaimer |
Privacy Policy
Information on this website represents the author's opinion and does not constitute professional advice; please read our terms of use and privacy policy before using this site. |
||||||||||||||||||||||||||||||||||