Reference Manual for the ProSafe Wireless 802.11g VPN Firewall Model FVG318
4-2 Wireless Configuration
v1.0, October 2005
Implementing Appropriate Wireless Security
Unlike wired network data, your wireless data transmissions can extend beyond your walls and
can be received by anyone with a compatible adapter. For this reason, use the security features of
your wireless equipment. The FVG318 wireless VPN firewall provides highly effective security
features which are covered in detail in this chapter.
There are several ways you can enhance the security of your wireless network:
• Restrict Access Based on MAC Address. You can allow only trusted PCs to connect so that
unknown PCs cannot wirelessly connect to the FVG318. Restricting access by MAC address
adds an obstacle against unwanted access to your network, but the data broadcast over the
wireless link is fully exposed.
• Turn Off the Broadcast of the Wireless Network Name SSID. If you disable broadcast of
the SSID, only devices that have the correct SSID can connect. This nullifies wireless network
‘discovery’ feature of some products, such as Windows XP, but the data is still exposed.
• WEP. Wired Equivalent Privacy (WEP) data encryption provides data security. WEP Shared
Key authentication and WEP data encryption will block all but the most determined
eavesdropper.
Note: Indoors, computers can connect to wireless networks at ranges of 300 feet or more.
Such distances allow others outside of your area to access your network.
Figure 4-1
.O3ECURITY%ASYBUTNOSECURITY
-!#!CCESS,IST.ODATASECURITY
7%03ECURITYBUTSOME
PERFORMANCEIMPACT
70!OR70!03+6ERYSTRONGSECURITY
:LUHOHVV'DWD
6HFXULW\2SWLRQV
5DGLXV8SWR)HHW
+Á.?wjËoåÔ±¤¤~Ë8ÁjjÄÄËÁjÝ?Ê+ÁÍË.jÁÜjÁ
Á?aM?a
#
8¤¤|+
3:5
02).4%2 -/$%- ).4%2.%4 ,/#!, 7,!.
7(67
$&7
$/(57
$&7
$/(57
/1.$&7
/1.$&7
FVG318