PC Security Forum

Full Version: 4 Tips to secure your wireless office network
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Few people are aware of security threats to their small business network.
You need to secure your home office or small business network so unauthorized people can't connect and possibly access your files or spy on internet traffic to hijack your valuable information and compromise your internet security. The following 4 tips will help you secure your wireless office network.

1. Encrypt Your Wi-Fi
Wireless routers and access points don't come secured by default. The reason is router manufacturers want people to easily install and set up their home wireless network regardless of technical knowhow. Encryption is very important to Wireless networks as they're far more easier to crack if not encrypted.

If you don't enable encryption, anyone can easily connect to your Wi-Fi network.

To prevent this you need to use at least the Personal (Pre-shared Key or PSK) mode of WPA or WPA2 security--preferably WPA2 as it's more secure.

This is the simplest method -- you set an encryption password in the wireless router and/or access points and enter the same password on the computers or devices when connecting to the Wi-Fi. Use a strong encryption password: up to 63 characters, mixed upper and lower case, and add in special characters too.

In your company wireless network, you should use the Enterprise (EAP) mode of WPA or WPA2 security. This is so employees don't see the encryption password, and so it's not stored on the computers and devices in case they are lost/stolen.

Access to the Wi-Fi can be based upon usernames and passwords you create for each user, rather than the actual encryption password. Thus, if an employee leaves or a laptop or mobile device is lost or stolen, you can easily change or revoke access for that particular user instead of changing the encryption password on all the equipment.

2 Disable SSID broadcast

Most wireless access points and routers automatically transmit their network name (SSID) into open air at regular intervals (every few seconds). This feature of Wi-Fi networks is intended to allow clients to dynamically discover and roam between WLANs.

However, this feature also makes it easier for hackers to break into your home and office network. Because SSIDs are not encrypted or otherwise scrambled, it becomes easy to grab one by snooping the WLAN looking for SSID broadcast messages coming from the router or AP.

In a home Wi-Fi network, roaming is largely unnecessary and the SSID broadcast feature serves no useful purpose. You should disable this feature to improve the security of your WLAN. Once your wireless clients are manually configured with the right SSID, they no longer require these broadcast messages.

3. Create a VLAN for Guests
Do not let the public or guests log onto your private network. Even if you have secured shared resources with file or network sharing permissions protected using passwords, they still may be able to eavesdrop on your Internet traffic to capture passwords of important accounts.

Preferably assign them to another virtual LAN and separate SSID if your network equipment supports VLANs and/or multiple SSIDs.

4. MAC Address Filtering
Most of the network administrators hardly care about MAC address filtering as it seems cumbersome to set up and operate. Anoter reason is
MAC address filtering can easily be circumvented by a good hacker. Still, if you keep it enabled, you will make it more difficult for casual snoopers to gain access your network. You determine the computers and devices you want to access the network, and you identify by their unique MAC address. Computers that are not listed won't be allowed to access the network. It's that easy!

Share your opinion, tips and tricks on what you do to secure your wireless network.
Network security is a high priority because many hackers try to infect as many computers possible so they can get an arm of zombie machines for attacks. For corporations, its to stop industry sabotage and/or espionage. Imagine what happens if they lost network integrity at banks, power grids, stock exchanges, etc.
Thanks! I got these tips to help protect my pc. But I am so annoying to see the adwares when opening computer.
Very useful tips. I will follow the steps to protect my computer. But I had seen a post which said that even when the computer is Hibernate, hackers can access too.
Is VoIP is secure for business, What are associated risk with it and please give detailed information about the prevention methods also.
(01-03-2013 10:29 PM)LucyKnowles Wrote: [ -> ]Is VoIP is secure for business, What are associated risk with it and please give detailed information about the prevention methods also.

Maybe you should start your own "Is VOIP safe ?" topic instead
of changing the topic if this one.
(01-04-2013 12:41 AM)Golempie Wrote: [ -> ]
(01-03-2013 10:29 PM)LucyKnowles Wrote: [ -> ]Is VoIP is secure for business, What are associated risk with it and please give detailed information about the prevention methods also.

Maybe you should start your own "Is VOIP safe ?" topic instead
of changing the topic if this one.

Ok, I will do that.
The first step to wireless mesh security is handicapping or constraining your mesh announced and used telephone systems . To add a layer of security to your wireless network, distinct it from your connected network by gathering all your wireless access points into a separate LAN attached to the DMZ dock of your firewall. With a wireless mesh, as in any other mesh, it’s important to have a security plan and then implement it.
I think the main thing is that you lose the data from the computer that are connected with the network in your office.And you have to face many problem due to that.And also a hacker can disable all the security and other devices that are connected with that network.
Reference URL's