文档介绍:White Paper
prehensive Review of Wireless LAN Security
and the Cisco Wireless Security Suite
Author
Pejman Roshan, working Product Manager, is the author of this white paper.
1. Introduction
Since the ratification of the IEEE standard in 1999, wireless LANs have e more
prevalent. Today, wireless LANs are widely deployed in places such as corporate office
conference rooms, industrial warehouses, -ready classrooms, and even coffeehouses.
These IEEE -based wireless LANs present new challenges work administrators
and information security administrators alike. Unlike the relative simplicity of wired
deployments, -based wireless LANs broadcast radio-frequency (RF) data for the client
stations to hear. This presents new plex security issues that involve augmenting the
standard.
Security in the IEEE specification—which applies to , , and
—e under intense scrutiny. Researchers have exposed several vulnerabilities
in the authentication, data-privacy, and message-integrity mechanisms defined in the
specification. This white paper:
• Reviews the authentication and data-privacy functions described in Clause 8 of the
IEEE specification
• Describes the inherent security vulnerabilities and management issues of these functions
• Explains how security issues can be addressed effectively only by augmenting the
security standard
• Examines Cisco Systems architecture for enhanced security on wireless LANs—including
the Cisco Wireless Security Suite
• Looks ahead to long-term security enhancements
Cisco Systems, Inc.
All contents are Copyright © 2002 Cisco Systems, Inc. All rights reserved. Important Notices and Privacy Statement.
Page 1 of 39
2. Authentication and Its Weaknesses
Wireless LANs, because of their broadcast nature, require the addition of:
• User authentication to prevent unauthorized access work resources
• Data privacy to protect the