Technology Industry
Industry: Email Alert RSS FeedSecurity standards improve: improved encryption standards offer better wireless safeguards - Wireless
Communications News, Jan, 2002 by Joe Savarese
Wireless LANs (WWANs) and wireless WANs use different technologies and meet different needs. Their security challenges are similar, and a single security solution can be deployed over both kinds of networks.
The confidentiality of information is vital, since anyone connected to a WLAN or WWAN can eavesdrop. The security methods must also take the user experience into account: A method that is too much trouble will not be used.
Seamless roaming between networks is favorably accomplished using virtual private network (VPN) technology for mobility (wireless), which connects network components and resources through secure protocol tunnels. Thus, mobile devices on disparate networks appear to share a common backbone.
Most RecentTechnology Articles
- The Google Manifesto: Dr. Open and Mr. Closed
- RIM Is Getting Too Successful for Its Customers' Good
- Tech Law: Google Loses in France, GPL Suits Target Many, IBM Sued, More
- Microsoft Moves Fast, Already Has Custom XML Patch for Word
- Microsoft Might Get Advantage or Pain from Order To Not Sell Word
- More »
Unlike VPN technology, which normally operates at the network layer and above, vendors of Wi-Fi-compliant devices supply encryption capabilities at the media access layer, based on the wired equivalency protocol (WEP) standard. The intent of the WEP standard is to use cryptography to make wireless LANs as secure as wired ones. Questions have been raised, however, that the chosen cipher mechanism for WEP is poorly suited for the way it is used in 802.11b environments.
Industry analysts and the Wireless Ethernet Compatibility Alliance recommend that enterprises deploy VPN technology, which directly addresses the security problem, and also provides advanced features like network and subnet roaming, session persistence for intermittent connections, and battery life management for mobile devices.
Compared to WLANs, WWANs operate at much lower speeds and over greater distances. The security used for the wireless link depends on the access technology and the telecommunications carrier.
For example, in global system for mobile communications and derivative networks, subscriber identity mechanism cards are used to supply key information used during encryption. Although all of these WWAN security systems encrypt the data while it is being transmitted, security becomes the responsibility of the individual user once the data leaves the wireless interconnect and travels over a public network, such as the Internet.
To protect data from end to end, enterprises typically deploy wireless-optimized VPNs, just as they do with Wi-Fi networks. A VPN for WWANs should provide distinctions specific to wireless networks and use standard protocols like Layer 2 tunneling protocol/IPsec.
The most popular encryption algorithm deployed today is the data encryption standard (DES) as defined by the U.S. government. Improvements in processing power, however, have left the default 56-bit keys used by DES vulnerable to attack. To increase the level of privacy, many vendors have adopted what is commonly known as triple-DES. This involves running the same DES algorithm three times, using three separate keys. Unfortunately, this is processor intensive, making it inappropriate for less powerful wireless devices. In addition, tripling the key length to 168 bits does not improve privacy significantly.
To provide strong encryption with improved performance, the National Institute of Standards and Technology selected Rijndael ("Rhine-doll") as the new advanced encryption standard (AES). Rijndael's low memory requirements and high performance make it suitable for mobile computing. The standard specifies three different key sizes: 128, 192 and 256. When selecting a VPN for wireless networks, choosing one that supports Rijndael yields improved performance and significantly stronger security.
Other attributes found in good WWAN VPNs include compression to increase perceived link speed; link optimizations to reduce protocol chattiness; and session persistence to handle times when the mobile station is in a coverage hole (where coverage is bad or blocked), detached from the network or suspended to conserve battery life. Session persistence is crucial, since it lets me user Keep me established session and VPN tunnel connected--even if a coverage hole is entered during an application transaction.
In Wi-Fi networks, poorly selected algorithms make for weak security. Users need to be able to roam to different subnets or networks while maintaining security associations. To make the mobile devices more usable, users have to be able to maintain their application sessions.
In WWANs, the network architecture sets the need for additional security measures. Coverage is spottier and the network is slower. Wireless users need session persistence, link optimizations and compression for the network to be usable.
In both types of networks, analysts recommend the use of VPNs for in-depth defense. The VPN should support standard security encryption algorithms and wireless optimizations suitable for today's smaller wireless devices.
Circle 255 for more information from NetMotion Wireless
Savarese is CTO of NetMotion, Seattle, WA, www.netmotionwireless.com
CXO UnpluggedSmart Business interviews on BNET
Brought to you by CBS MoneyWatch.com
- Best- and Worst-Paid College Degrees
- 6 Things You Should Never Do on Twitter or Facebook
- How Much Sleep Do You Really Need?
- 6 Big Myths about Gas Mileage
- 5 Rules for Immediate Annuities
- Death in the Family: 12 Things to Do Now
- Dumbest Things You Do With Your Money
- 6 Online Networking Mistakes to Avoid
- 401(k) Mistakes to Avoid
- 5 Economic Scenarios to Keep You Up at Night
- The Real ‘Best Places to Retire’
- Best Credit Cards for You
- 12 Tough Questions to Ask Your Parents
- The Real ‘Best Colleges’
- Home Buyer Tax Credit: How to Cash In
- Why You Shouldn't Bash Cash
- 8 Phony 'Bargains' and Better Alternatives
- Danger: 3 Debit Card Scams to Avoid
- 6 Myths About Gas Mileage
- 29 Fees We Hate Most
- Quick and Easy Ways to Boost Returns
- Best Stocks to Buy Now
- Lower Your Taxes: 10 Moves to Make Now
- New Jobs: 8 Lessons from Real-Life Career Switchers
- The New Job Market: Who Wins and Who Loses?
- Health Care Reform's Public Option: Everything You Need to Know
- Volunteer Work When Unemployed: Should You Work for Free?
- Whose Recovery Is This?
- Long-Term-Care Insurance: 4 Biggest Risks to Avoid
Content provided in partnership with
Most Recent Technology Articles
Most Recent Technology Publications
Most Popular Technology Articles
- BizRate to monitor in-store customer satisfaction for Office Depot stores - Market Intelligence
- Speed control of separately excited DC motor
- Effects of creative, educational drama activities on developing oral skills in primary school children
- Failed businesses in Japan: a study of how different companies have failed, and tips on how to succeed, in the Japanese market
- Political stability and economic growth in Asia



