ZyWALL 10~100 Series Internet Security Gateway
Wireless LAN with IEEE 802.1x
5-1
Chapter 5
Wireless LAN With IEEE 802.1x
As wireless networks become popular for both portable computing and corporate networks, security is now a
priority.
Security Flaws with IEEE 802.11
Wireless networks based on the original IEEE 802.11 have a poor reputation for safety. The IEEE 802.11b
wireless access standard, first published in 1999, was based on the MAC address. As the MAC address is
sent across the wireless link in clear text, it is easy to spoof and fake. Even the WEP (Wire Equivalent
Privacy) data encryption is unreliable as it can be easily decrypted with current computer speed
Deployment Issues with IEEE 802.11
User account management has become a network administrator’s nightmare in a corporate environment, as
the IEEE 802.11b standard does not provide any central user account management. User access control is
done through manual modification of the MAC address table on the access point. Although WEP data
encryption offers a form of data security, you have to reset the WEP key on the clients each time you change
your WEP key on the access point.
IEEE 802.1x
In June 2001, the IEEE 802.1x standard was designed to extend the features of IEEE 802.11 to support
extended authentication as well as providing additional accounting and control features. It is supported by
Windows XP and a number of network devices.
Advantages of the IEEE 802.1x
•
User based identification that allows for roaming.
Summary of Contents for 10 Series
Page 8: ...ZyWALL 10 100 Series Internet Security Gateway viii Table of Contents Index A ...
Page 14: ......
Page 16: ......
Page 28: ......
Page 32: ......
Page 34: ...ZyWALL 10 100 Series Internet Security Gateway The Big Picture 3 2 ...
Page 46: ......
Page 56: ......
Page 58: ......
Page 92: ......
Page 93: ...Index III Part III Index This part provides an Index of key terms ...
Page 94: ......