You are on page 1of 4

C s bo mt 802.

11
802.11 c ba phong thc c bn bo mt cho WLAN l : SSID, WEP v
MAC address filtering.
3.2.1 Tp dch vID (SSID)
SID l mt chui c s dng nh ngha mt vng ph bin xung quanh
cc im truy nhp nhn (APs). S khc nhau gia cc SSID trn cc AP c th
cho php chng chp cc mng v tuyn. SSID l mt { tng v mt mt khu
gc m khng c n cc my tnh (my khch ) khng th kt ni mng. Tuy nhin,
yu cu ny c th d dng b gt qua mt bn bi v cc AP qung b SSID nhiu
ln trong mt giy v bt kz cng c phn tch 802.11 no nh l Airmagnet,
NetStumbler, hay Wildpackets Airopeek c th c s dng c n. Bi v
nhng ngi s dng thng nh cu hnh cc my khch, iu ny lm cho cc
mt khu c bit rng ri.
Nhng ngi s dng c nn thay i SSID ca h khng? Tt nhin, mc
d SSID khng b sung bt kz lp bo mt no, n nn c thay i khi cc gi
tr mc nh v rng n lm cho nhng ngi khc khng th ngu nhin s dng
mng ca ngi s dng hp php.
3.2.2 Giao thc bo mt tng ng hu tuyn (WEP)
Tiu chun 802.11 nh ngha mt phng thc mt m ho v nhn thc gi
l WEP (giao thc bo mt tng ng hu tuyn) gim nh nhng lo lng v
bo mt. Ni chung, nhn thc c s dng bo v chng li nhng truy nhp
tri php ti mng, trong khi mt m ho c s dng nh bi nhng ngi
nghe trm khi c gng thc hin gii mt m bt gi c. 802.11 s dng WEP
cho c mt m ho v nhn thc.
C bn tuz chn sn c khi s dng WEP:

Khng s dng WEP


S dng WEP ch mt m ha.
S dng WEP ch nhn thc.
S dng WEP nhn thc v m ho.
Mt m ha WEP da trn thut ton RC4, thut ton ny s dng mt kho
40 bit cng vi mt vec t khi to (IV) ngu nhin 24 bit m ha vic truyn
dn d liu v tuyn. Nu c php, cng mt kho WEP phi c s dng trn
tt c cc my khch v cc AP cho cc truyn thng.
ngn chn truy nhp tri php, WEP cng nh ngha mt giao thc nhn
thc. C hai dng nhn thc c nh ngha bi 802.11 l : Nhn thc h thng
m v Nhn thc kho dng chung.
Nhn thc h thng m cho php bt kz my khch 802.11b kt hp vi AP
v b qua qu trnh nhn thc. Khng din ra nhn thc my khch hoc mt m
ho d liu. N c th c s dng cho truy nhp WLAN cng cng, truy nhp
WLAN cng cng c th tm thy trong cc ca hng cafe, sn bay, cc khc sn,
cc trung tm hi ngh, v cc nhng ni gp g tng t khc. y, tnh cng cng c yu cu cho
s dng mng. Mng m nhn thc ngi s dng da trn
tn mt khu ngi s dng trn mt trang Web ng nhp an ton. khp kn
cc mng, ch ny c th c s dng khi cc phng thc nhn thc khc
c cung cp.
Trong vic s dng nhn thc kho dng chung, AP gi mt challenge
phrase ti mt radio khch yu cu nhn thc. Radio khch m ha challenge
phrase da vo kho dng chung v tr n v cho AP. Nu AP gii m thnh cng
n tr v bn tin challenge gc, n chng t rng my khch c kho ring chnh
xc. Khi my khch c to mt kt ni mng.
i vi ngi quan st ngu nhin, dng nh thy rng qu trnh nhn thc

kho dng chung l an ton hn qu trnh nhn thc kho m. Tuy nhin, c
challenge phrase (c gi trong mt vn bn khng m ho) v challenge l sn
c, mt hacker c th tm thy kho WEP. V th khng phi nhn thc h thng
m m cng khng phi nhn thc kha ring l an ton.
Bi v tiu chun 802.11 da vo cc dch v qun l{ kho ngoi phn
phi cc kho b mt ti mi trm v khng chi r cc dch v phn phi kho, hu
ht cc my khch 802.11 truy nhp cc Card v cc AP da trn phn phi kho
nhn cng. iu ny ngha l cc kho gi nguyn khng thay i tr khi nh qun
l{ thay i chng. Nhng kh khn do trng thi khng thay i ca cc kho v
qu trnh qun l{ kho nhn cng cng nh vic thay i cc kho trn mi trm
trong mt mng ln c th tiu tn rt nhiu thi gian. Hn na, do tnh di ng
vn c ca dn s v khng c mt phng php hp l{ qun l tc v ny, nh
qun l mng c th phi chu p lc rt ln hon thnh vic ny trong mt
khung thi gian hp l.
Mt lo lng khc l sc mnh ca WEP v rng n ch cung cp bn kho
mt m tnh dng chung. iu ny ngha l bn kho mt m ha l ging nhau cho
tt c cc my v cc AP ti mi thi im mt my khch truy nhp vo mng.
Vi thi gian, s gn gi (trng thi v thi gian v khng gian), v cc cng
c dowload t Web, cc hackers c th xc nh kho mt m s dng v gii
m d liu.
T vic WEP c th b b gy, ngi s dng c nn s dng WEP khng?
nu ngi s dng khng c ci g khc, th vn nn dng WEP v n s gy kh
khn hn cho cc Hacker c kh nng .
3.2.3 Lc a ch MAC
Ngoi hai c ch bo mt c bn m 802.11 cung cp, nhiu cng ty trin

khai lc a chi MAC trong cc sn phm ca h. C ch ny l khng hon ho.


B lc a ch MAC bao gm cc a ch MAC ca cc Card giao din mng
v tuyn (NIC), c th kt hp vi AP cho bt kz. Mt s nh cung cp cung
cp cc cng c t ng qu trnh nhp v cp nht; mt khc, y l mt x l
nhn cng hon ton. Mt b lc MAC cng khng khng bo mt mnh bi v n
d dng tm ra cc a ch MAC tt vi mt Niffer (tn chng trnh phn tch
mng), khi bng vic s dng cc driver Linux sn c trn Internet cho hu ht
cc Card truy nhp my khch 802.11, ngi s dng c th xc nh cu hnh a
ch MAC sniffed vo trongCard v ginh quyn truy nhp ti mng. Mc d khng
bo mt hon ho, lc a ch MAC c tc dng lm cho ai kh khn hn khi
ginh quyn truy nhp mng.
C hai phng thc khc cp bi Wi-Fi, s dng cc kho phin v
mt h thng VPN, c th trin khai c cho bo mt Wi-Fi. m hiu c
mc bo mt bao nhiu l cn thit cho mt ng dng thc t, iu quan trng l
phi hiu cc mi e do v cc tn cng c th xy ra.

You might also like