WLAN Authentication

  • Types Of Authentication
  • Open Authentication
    • The authentication request
    • The authentication response
  • Shared Key Authentication
  • requires that the client configure a static WEP key
  • Service Set Identifier (SSID)
  • MAC Address Authentication

WEP Encryption Weaknesses

  • Statistical Key DerivationPassive Network Attacks
  • Inductive Key DerivationActive Network Attacks
    • Initialization Vector Replay Attacks
    • Bit-Flipping Attacks
  • Static WEP Key Management Issues

Component of WLAN Security

  • The Authentication Framework (802.1X)
  • The EAP Authentication Algorithm
    • Mutual Authentication
    • User-Based Authentication
    • Dynamic WEP Keys
  • Data Privacy with TKIP (Temporal Key Integrity Protocol )
    • A message integrity check (MIC
    • Per-packet keying
    • Broadcast Key Rotation

  • There are two encryption techniques to overcome WEP encryption weakness
    • Initialization vectors
    • Feedback modes


Wireless LANs provide new challenges to security and network administrators that are outside of the wired network. The intrinsic nature of wireless transmission and the availability of issues attack tools downloaded from the Internet, security threats must be taken seriously.

Security policies should be defined for acceptable network thresholds and performance. Wireless LAN intrusion detection systems complement a layered approach and provide vulnerability assessment, network security management, and ensure that what you think you are securing is actually secured.

