Gentoo Archives: gentoo-user

From: Saphirus Sage <saphirus497@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Locking down a wireless network
Date: Thu, 29 Jan 2009 20:49:11
Message-Id: 49821639.8090105@gmail.com
In Reply to: Re: [gentoo-user] Locking down a wireless network by Grant
1 Grant wrote:
2 >>> My Gentoo router's wireless network is encrypted via WPA and doesn't
3 >>> DHCP. I'd like to take this a step further in case my WPA key gets
4 >>> hacked. Can I issue only certain IPs to certain MAC addresses?
5 >>>
6 >>> Does WPA2 require hardware support?
7 >>>
8 >> I don't think so. It should just be a driver/firmware update if you've
9 >> got some device that supports WPA and not WPA2. The AES encryption of
10 >> WPA2 requires a little more hardware power than WEP or WPA normally
11 >> uses, but I don't think it needs any special chip or anything like
12 >> that.
13 >>
14 >> You can also do VPN over your wifi connection, and require it for
15 >> access to the rest of your network or the internet. At least then if
16 >> someone hacks your wireless key, they still can't do anything without
17 >> having your VPN certificate.
18 >>
19 >
20 > Actually, VPN would rule out my wifi cell phone I bet.
21 >
22 > - Grant
23 >
24 >
25 Yeah, it probably would. If you want to keep using the wifi mobile, you
26 may be stuck with whatever layer 2 security options it supports; most
27 likely WPA2 then.