LANCOM OAP
-
54
-
1 Wireless – LANCOM OAC
-
54
-
1 Wireless
Chapter 4: Security settings
40
EN
4.1.6
IPSec over WLAN
By means of IPSec over WLAN a radio network can be optimally secured in
addition to the already introduced securing mechanisms. In order to run IPSec
over WLAN you have to upgrade the base stations of the with the LANCOM
VPN option and the LANCOM Advanced VPN Client, which runs under the
operating systems Windows Vista
TM
, Windows 2000 and Windows XP. For
other operating systems client software from other manufacturers is available.
The drivers for the LANCOM AirLancer wireless adapter are already equipped
with a 802.1x client.
4.2
Tips for handling keys
The security of encryption procedures can be substantially increased the by
paying attention to some important rules for handling keys.
Keep keys as secret as possible.
Never note a key. Popular, but completely unsuitable are for example:
notebooks, wallets and text files in PCs. Do not share a key unnecessarily.
Select a random key.
Use randomized keys of character and number sequences. Keys from the
general linguistic usage are insecure.
Change a key immediately in case of suspicion.
It is time to change the key of the Wireless LAN if an employee with access
to a key leaves your company. The key should also be renewed in case of
smallest suspicion of a leak.
LEPS prevents the global spread of passphrases.
Activate LEPS to enable the use of individual passphrases.
4.3
The security settings wizard
Access to the configuration of a device permits not only to read out critical
information (e.g. WEP key, Internet password). Rather, also the entire settings
of the security functions (e.g. firewall) can be altered then. So an unauthorized
configuration access endangers not only a single device, but the entire net-
work.
Your LANCOM has a password protection for the configuration access. This
protection is already activated during the basic configuration by entering a
password.