Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 25 Jul 2002 20:30:14 +0200
From:      John Angelmo <john@veidit.net>
To:        Andre Hall <ahall@pcgameauthority.com>
Cc:        Mark Koskenmaki <bsdlists@nwbombers.com>, freebsd-isp@FreeBSD.ORG
Subject:   Re: PPPoE
Message-ID:  <3D4043B6.7050307@veidit.net>
References:  <200207251729.g6PHT0DJ001492@inetworx.pcgameauthority.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Andre Hall wrote:
> Well, that doesn't really answer his question. ALl you did is open up 
> a new can of worms. The 802.11x can be secured as I have sent John an 
> email explaining how to do it. Yes, VPN is an additional component to 
> the secure transmittion of his data across the network. Not to flame 
> you Mark but I think some of us more experienced owe it to the newbies 
> to give a bit more direction to their needs. 
> There are also many web sites available giving examples on how this 
> can be done. One of my favorites is  
> http://www.practicallynetworked.com/support/wireless_secure.htm
> Hope this helps as well.
> 
> 
>>Mark Koskenmaki wrote:
>>
>>>I would like to secure (that is, keep people from getting access 
>>
> through or
> 
>>>past) my wireless network.    Is anyone familiar with using PPPoE 
>>
> on a
> 
>>>windows (98, 2K, XP, ME) to connect to a freebsd based 
>>
> PPPoE "server"?
> 
>>>I have no idea how it would be done, but it seems like a very 
>>
> sensible and
> 
>>>slick idea to overcome the limitations of 802.11b network (in)
>>
> security.
> 
>>>Anyone?   (consider me a total newbie, here)
>>>
>>>
>>>
>>
>>PPPoE isn't recomended for this since it's so easy to spoof, my 
>>recomendation is a VPN connection.
>>
>>/John
>>
>>
>>To Unsubscribe: send mail to majordomo@FreeBSD.org
>>with "unsubscribe freebsd-isp" in the body of the message
>>
>>
> 
> 
> 

PPPoE isn't recomended since it's so easy to spoof and it isn't 
encrypted, therefore I would suggest some other security solution.
802.1x (not 802.11x) is applied to both wired and wireless networks, but 
here your equipmend must have support for 802.1x and 802.1x capable 
hardware simply isn't worth the money for a homeuser.

Now WEP works fine if you don't have any data that's needed to keep 
secure from others, but relaying on WEP to secure important data is just 
stupid since it takes from 15 to 1 hour to sniff the key.

/John


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3D4043B6.7050307>