cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
340
Views
0
Helpful
2
Replies

Help with security on two 1300's

laneclark
Level 1
Level 1

I have two 1300's pointed at each other. I one as the root and the other as the non-root. They are moving traffic fine. Now what is the best way to secure the data passing over this link? Can I use WPA or is mac authentication fine?

2 Replies 2

smalkeric
Level 6
Level 6

The Cisco Aironet 1300 Series supports the Cisco Wireless Security Suite, including support for Wi-Fi Protected Access (WPA) 802.1x mutual authentication with Cisco Extensible Authentication Protocol (LEAP), strong encryption with Temporal Key Integrity Protocol (TKIP), and Message Integrity Check (MIC) support. At FCS, the hardware will be Advanced Encryption Standard (AES)-capable and will only require a future software upgrade to support AES.

http://www.cisco.com/en/US/products/ps5861/products_qanda_item0900aecd801e3e59.shtml

scottmac
Level 10
Level 10

Use WPA. MAC filtering is very easy to defeat (by spoofing the MAC address). MAC filtering does not encrypt the traffic.

If you use WPA-PSK (pre-shared Key), use a strong key.

A strong key uses a combination of letters (uppear and lower case), numbers, and some punctuation. The idea is reduce the chances of a successful "dictionary" attack - break up words with numbers and punctuation: Instead of "I Like Cisco" you might use something like "I-LiKe_Ci3sc0!!"

Some people like to use a randomly generated strings. Either way, it forces the attacker to have to "brute force" the attacks where they have to match every possible combination of letters, numbers, and punctuation in your key (still possible, so longer keys are better than shorter keys).

Good Luck

Scott

Review Cisco Networking for a $25 gift card