I need to create a key for a wireless router, and want to make sure it's as secure as possible. Are there any best...
By submitting your personal information, you agree that TechTarget and its partners may contact you regarding relevant content, products and special offers.
practices I should follow to make sure my wireless keys are sufficiently secure?
Absolutely. Generally speaking, you should strive to follow similar practices when selecting and implementing a Wi-Fi security key as you would when selecting any other password that protects sensitive information. Some good wireless key security guidelines include:
● Choose a key that is at least eight characters long.
● Don’t use a key that is based upon a dictionary word.
● Use a mixture of uppercase letters, lowercase letters, digits and symbols.
● Change your key periodically and whenever anyone with access to it leaves the organization.
In addition to choosing a strong password, you need to be certain you’re using strong wireless encryption. While devices you buy on the store shelf today are generally preconfigured to use the secure Wi-Fi Protected Access (WPA or WPA2) encryption technology, many older devices require you select it explicitly. You should avoid, at all costs, the use of the older Wired Equivalent Privacy (WEP) encryption algorithm. WEP security is fundamentally flawed and even an unskilled attacker can gain access to your WEP-protected network in a matter of seconds; free tools available on the Internet, such as AirCrack, can be used maliciously with little or no training to retrieve your WEP encryption key by doing little more than monitoring your network for a short period of time.
There’s one other issue you should consider: Are you sure using a shared security key is the best solution for your environment? In anything other than the smallest business, you probably want to consider the use of WPA Enterprise instead of a shared secret key. The enterprise wireless networking option leverages an existing authentication infrastructure to allow users to sign in to the wireless network with their own username and password. This way, when a user leaves the organization, you only need to disable his or her account and not change the wireless encryption key on every device on your network.
Dig Deeper on Wireless Network Protocols and Standards
Related Q&A from Mike Chapple
A proposed cyberattack information database in the U.K. aims to improve cyberinsurance. Expert Mike Chapple explains what collecting data breach ...continue reading
The proposed CFTC regulations on cybersecurity testing are set to finalize in 2016. Expert Mike Chapple discusses the effects these regulations have ...continue reading
Whether Apple is a HIPAA covered entity was called into question when it advertised for a health regulations lawyer. Expert Mike Chapple discusses ...continue reading
Have a question for an expert?
Please add a title for your question
Get answers from a TechTarget expert on whatever's puzzling you.