Security level of wireless network

Security level of wireless network

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Security level of wireless network Marek Elsner 03-26-2007
Posted by Marek Elsner on March 26, 2007, 3:47 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi,

I am writing some kind of work about security and I would like to ask
you what do you think.

Consider that you went wardriving and in a random point in town you
start searching for available / visible wireless networks. Of course in
passive way you can get plenty of information, such as:

- SSID of network
- WEP / WPA
- avarage number of packets
- signal strength
- number of all networks
...

I would like to grade security level of this point in town.
It can be graded in three level scale, or in 0-100 points scale, or in
any other way....it does not matter.

What do you think can be the algorithm to grade the security level of
this research point..?

Got any ideas or suggestions, what parameters more should be included...?

Thanks for help

Marek
(Poland)

Posted by Sebastian Gottschalk on March 26, 2007, 3:58 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Marek Elsner wrote:

> Hi,
>
> I am writing some kind of work about security and I would like to ask
> you what do you think.
>
> Consider that you went wardriving and in a random point in town you
> start searching for available / visible wireless networks. Of course in
> passive way you can get plenty of information, such as:
>
> - SSID of network
> - WEP / WPA
> - avarage number of packets
> - signal strength
> - number of all networks
> ...
>
> I would like to grade security level of this point in town.
> It can be graded in three level scale, or in 0-100 points scale, or in
> any other way....it does not matter.
>
> What do you think can be the algorithm to grade the security level of
> this research point..?
>
> Got any ideas or suggestions, what parameters more should be included...?

Oh, you can simply add up points:

SSID hidden: 0
MAC filter: 0
WEP: 0
WPA: 10
WPA+secure key: 90

It the total for one is zero, then the total score for a collection is
zero.

Posted by Bogwitch on March 26, 2007, 9:43 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Sebastian Gottschalk wrote:
> Marek Elsner wrote:
>
>> Hi,
>>
>> I am writing some kind of work about security and I would like to ask
>> you what do you think.
>>
>> Consider that you went wardriving and in a random point in town you
>> start searching for available / visible wireless networks. Of course in
>> passive way you can get plenty of information, such as:
>>
>> - SSID of network
>> - WEP / WPA
>> - avarage number of packets
>> - signal strength
>> - number of all networks
>> ...
>>
>> I would like to grade security level of this point in town.
>> It can be graded in three level scale, or in 0-100 points scale, or in
>> any other way....it does not matter.
>>
>> What do you think can be the algorithm to grade the security level of
>> this research point..?
>>
>> Got any ideas or suggestions, what parameters more should be included...?
>
> Oh, you can simply add up points:
>
> SSID hidden: 0
> MAC filter: 0
> WEP: 0
> WPA: 10
> WPA+secure key: 90
>
> It the total for one is zero, then the total score for a collection is
> zero.

Going to have to disagree with you on that one.

Using your scheme....

WPA+secure key + MAC Filter = 0. Why?

Additionally, how would the OP tell the diference between WPA and
WPA+secure key without actually cracking (or attempting to crack) the
WPA key?

How does WPA without a secure key attract a weighting of 10?

Other than that, I'd have to agree with you on the numbers!

Bogwitch.

Posted by Sebastian Gottschalk on March 26, 2007, 12:25 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Bogwitch wrote:

>> Oh, you can simply add up points:
>>
>> SSID hidden: 0
>> MAC filter: 0
>> WEP: 0
>> WPA: 10
>> WPA+secure key: 90
>>
>> It the total for one is zero, then the total score for a collection is
>> zero.
>
> Going to have to disagree with you on that one.
>
> Using your scheme....
>
> WPA+secure key + MAC Filter = 0. Why?

Sorry for causing a misunderstanding. You're adding up the points for each
system. In your case, it would be 10 (using WPA) + 90 (WPA and using a
secure key) + 0 (useless MAC Filter) = 100.

Then, as he said, for a collecting of systems, the entire score is the
minimum of the scores of each system. Thus, if ten systems are secure (100)
and one is insecure (0), the collection is insecure (0) because on of the
systems can be trivially abused.

> Additionally, how would the OP tell the diference between WPA and
> WPA+secure key without actually cracking (or attempting to crack) the
> WPA key?

Not at all. That's why he has to try for finding out.

> How does WPA without a secure key attract a weighting of 10?

Security of a key depends on the model. SHA-256("Luke, I am your father!")
is trivially insecure, yet you won't be able to crack it via a word list.
However, if you know that it's hashed with a well-known hash function and
it's a well-known phrase, you can start search and probablby crack it with
way less than 2^64 steps.

> Other than that, I'd have to agree with you on the numbers!

Well, one may state that WEP-128 can be secure if you never use the network
and rate-limit replies sent by the router. Of course this is purely
theoretical.

Similar ThreadsPosted
VPN Security on Unencrypted Wireless Network March 1, 2006, 3:01 pm
Security incidents. Looking for high level reviews etc. December 3, 2004, 6:27 pm
Denial of service in Wireless local area network July 21, 2006, 10:55 pm
looking for "wireless" security job July 6, 2005, 8:15 am
Wireless security October 10, 2005, 12:51 pm
wireless security December 20, 2007, 8:57 am
Security and wireless internet December 8, 2006, 4:12 am
Hello Watch my talk on wireless security here February 20, 2006, 1:11 pm
Hello Watch my talk on wireless security here February 20, 2006, 1:14 pm
Serious level HDD data protection May 11, 2004, 2:40 am

The site map in XML format XML site map

Contact Us | Privacy Policy