Internet Security Systems checks for wireless LAN vulnerabilities

April 27, 2001, 01:52 PM —  Network World — 

Internet Security Systems this week announced it has expanded its security consulting practice to tackle vulnerabilities that may be associated with wireless LAN products from vendors that include Cisco, Lucent, Nortel, 3Com and LinkSys.

Until now, ISS has provided intrusion-detection and risk-management scanning tools, such as Internet Scanner, for detecting vulnerabilities in applications running on wireline networks. But ISS Chief Technical Officer Chris Klaus says that growing demand from customers for help in evaluating risks associated with wireless LANs has prompted ISS to gear up for this tetherless technology as well.

For the first time, ISS has added to its Internet Scanner product a way to detect wireless LANs based on the IEEE 802.11b Ethernet standard used at 2.4 GHz. "Internet Scanner can now do discovery-type analysis," said Klaus, adding that it's not uncommon at large companies for employees in a division to simply plug in a wireless base station and add a wireless LAN and wireless-enable laptops.

"In essence, these are rogue base stations," Klaus noted, adding they can provide a way for hackers to get into not only the wireless LAN segment, but the wired portion of the corporate intranet as well.

In the next few months, ISS plans to enhance Internet Scanner to remotely identify several security vulnerabilities that could be associated with vendor wireless LAN products. In the meantime, ISS security experts will provide professional services to advise customers on the potential problems and how to develop a security policy to encompass wireless LANs tied in with wireline LANs.

Wireless LANs typically come out-of-the-box with weaknesses that allow hackers to fairly easily gain access to a wireless LAN network unless the default settings are changed, according to Klaus. Overall, ISS is recommending that corporations cordon off each wireless LAN base station from their wireline intranet by means of a firewall. "We're saying it should be treated as an untrusted device, with the firewall requiring proper authentication and monitoring," he notes.

Depending on the position of the wireless antenna, it's possible to gain access to wireless LANs from about 300 feet, through glass or walls. The 802.11b standard calls for products to have a shared password for all devices, called the Server Set ID. Wireless LAN products ship with default passwords that have become commonly known. Cisco's password is "Tsunami," 3Com's is "101," for instance.

"The idea here was ease of use over security," commented Klaus, adding it's possible to just turn on a wireless LAN laptop and join a wireless network pretty easily from a distance.

Wireless LANs may include encryption, but the 802.11b standard's encryption standard, called "Wired Equivalent Privacy," has a default setting for "no encryption." Two other modes include 40-bit breakable encryption and the stronger 128-bit. ISS is recommending that all wireless laptops make use of added VPN clients to protect data.

The management interface to wireless LANs, based on SNMP, also has vulnerabilities associated with it, because it's not that difficult to capture the default community string to read the configuration of all the devices on a wireless network.

3Com's default is "Com Com Com," pointed out Klaus. In this respect, Lucent and Cisco did a better job of requiring the administrator to enable the configuration before the network management capability can be used, he noted.

Like wireline networks, wireless LANS can be jammed by denial-of-service attacks. "It

Network World

I like it!
Post a comment
The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
Resources
White Paper

Symantec Backup Exec 12 and Backup Exec System Recovery 8 deliver industry leading Windows data protection and system recovery. Download this whitepaper to find out the top reasons to upgrade and how to get continuous data protection and complete system recovery.

Webcast

Data and system loss — from a hard drive failure, malicious attack, natural disaster, or simple human error — can happen anytime. Don’t leave your business vulnerable. Make sure you have a secure recovery strategy in place. Symantec's latest backup and system recovery technology can efficiently restore critical applications, individual emails and documents and even restore your entire system in minutes in the event of a loss.

White Paper

Businesses face a growing challenge to ensure that the IT environment is properly protected. Backup Exec 12 integrates with other applications in the Symantec family of products, to complement your current data protection strategy, keep your data securely backed up and make it recoverable when you need it most.

Free stuff

Enterprise 2.0 Implementation
By Aaron C. Newman, Jeremy Thomas
Published by McGraw-Hill
Learn more!

Deploying Cisco Wide Area Application Services
By Zach Seils, Joel Christner
Published by Cisco Press
Learn more!

Featured Sponsor

AISO founders envisioned a Web hosting company that was environmentally friendly. While the company employed energy-efficient innovations like solar panels, its infrastructure produced unacceptable power and cooling requirements. Find out how AISO leveraged AMD technology to overcome their challenge in this case study white paper.

In this whitepaper, Scalar explores the opportunity to change the landscape with respect to mission critical databases built around Oracle. Leveraging technologies such as Linux, high-end commodity processing power and Oracle RAC technology to architect, design, build and maintain database infrastructure that delivers maximum availability, reliability and performance at a fraction of traditional cost.

On a typical day, weather.com, the Web site for The Weather Channel in Atlanta, serves up between 15 million and 20 million page views. But in September 2004, when back-to-back hurricanes ransacked Florida, the peak traffic on one day more than tripled: over 70 million page views by more than 7 million unique visitors. Read the full success story now.

More Resources