Berkeley CSUA MOTD:Entry 24011
Berkeley CSUA MOTD
 
WIKI | FAQ | Tech FAQ
http://csua.com/feed/
2025/05/25 [General] UID:1000 Activity:popular
5/25    

2002/3/2-3 [Computer/Networking] UID:24011 Activity:very high
3/2     I just bought a wireless access point for home(couldn't wait until
        the official 802.11a comes out) and for various WinXP reasons,
        128-bit WEP is not working on one of my machines, but the AP can
        filter by MAC address. Is MAC filtering sufficient wireless security?
        \_ No, it's trivially spoofable.  But, so is WEP.  -tom
        \_ Wireless = zero security.  If you want security you can't use
           wireless.
           \_ Using 802.11a should be fine.
              \_ there's already a break
        \_ If you want wireless security, you'll need to consider a layer3
           VPN between your stations and, say, a firewall, using something
           like KAME or Free S/WAN.  I don't know about Windows IPSEC
           implementation, but KAME tends to be pretty interoperable.  The
           scheme depends on you using a sensible authentication mechanism
           between stations, though.  -John
           \_ On campus they're doing AirBears with a Vernier captive portal,
              with authentication on the back end via a Radius server. -tom
              \_ This sounds like login-only protection.  Is there any
                 encryption going on after establishing a connection?
                 \_ Not at the network level, no.  You can, of course, use
                    end-to-end encrypted protocols like SSH.  -tom
                    \_ So a little sniffing and anyone can grab all those
                       clear text POP and telnet passwords floating around
                       campus and probably a whole bunch of other things?
                       \_ Yup.
                       \_ just like on the wired ethernet.  -tom
                          \_ Except physical access to a wired net is much
                             harder to get than to a wired net but you knew
                             that.  Why do bother?
                             \_ It is safe to say at this point that it is
                                easier to get physical access to the wired
                                net than the wireless net on campus.  There
                                are only 6 AirBears locations, while every
                                general-assignment classroom and most of the
                                libraries have open network ports.  -tom
           \_ Personally, I would keep a separate subnet for wireless and
              treat it as insecure, allowing only ssh connection.
              \_ AirBears uses VLANs, so the wireless net can only see other
                 wireless-net traffic.  But there's no firewalling.  -tom
2025/05/25 [General] UID:1000 Activity:popular
5/25    

You may also be interested in these entries...
2009/4/26-29 [Computer/Networking] UID:52910 Activity:nil
4/25    I have an Airport Express.  is there some way to let computer
        1 ping computer 2?  both computers are connected to wireless network
        successfully.  I can get to internet on both of them.  I just can't
        ping each other.  weird.  maybe they think that's a feature?
        \_ Sounds like your router is enforcing client isolation. If you can't
           change the setting on the router you're probably SOL.
	...
2009/2/27-3/5 [Computer/Networking] UID:52658 Activity:nil
2/27    I need to buy a wireless router, can u guys help me out?   I need the
        following features:  wireless, G or better, PPTP dial up, PPoE dialup,
        VoIP/SIP register, DDNS, uPnP.
        I am having a such hard time to find a review site which allow me to
        select these features.   Any ideas?  There are a couple model from
        this small company Draytek has these features, I am having the hardest
	...
2008/12/15-29 [Computer/Networking] UID:52254 Activity:kinda low
12/15   ausman, maybe this can help form your views on net neutrality:
        http://lessig.org/blog/2008/12/the_madeup_dramas_of_the_wall.html
        if you're bored, skip down to the iFilm example.
        \_ jim: consider the case of a private electrical utility:
           do you believe in "current neurality"? i agree if say GOOG
           were to put in a giant server complex creating a sudden local
	...
2008/11/11-26 [Computer/Networking] UID:51916 Activity:nil
11/11   Dumb question. My apartment has a bunch of inter-computer file
        exchange going on. Should I get a switch instead of a router to
        minimize traffic? Does it really make a difference? Let's say
        two computers exchanging info with each other are on the switch
        and the switch is connected to the router. The router will never
        know about the transfer between the two computers right?
	...
2008/10/21-22 [Computer/HW/Soundcard] UID:51610 Activity:nil
10/21   I installed the latest Ubuntu.  It recognized my wireless, dual
        monitor setup, sound card, then made me breakfast.
	...
2008/9/29-10/1 [Computer/Networking] UID:51325 Activity:nil
9/29    I'm looking for a new wireless router / firewall, preferably
        something that supports 802.11n. Any recommendations?
        \_ Which 802.11n?
           \_ Draft 2.0 or whatever version is supported by the the
              MacBook and iMac.
	...
2008/6/6-10 [Computer/Networking] UID:50171 Activity:nil
6/6     Now that 3g wireless speeds are getting useable and phones are
        coming out that have built in wifi are there any phones that
        can be used as wireless wifi access point?  -aspo
        \_ Yes. My coworker does this with his Blackberry.
	...
2008/5/31 [Computer/SW/Apps/Media, Computer/SW/Unix] UID:50105 Activity:nil
5/31    I have a slow wireless router and slow fileserver on my network.
        Is there a video or media player (windows or unix) that is smart
        about caching content while playing it?  I would like to be able
        to hit play on a file from a file share, wait for it to catch
        up for a while because my connection is so slow, walk away for
        a while and come back and view my movie with no annoying skips. thanks.
	...