Home > Security Tips > Guest Commentary > Safe computing in public hot spots
Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

GUEST COMMENTARY

Safe computing in public hot spots


Ed Tittel
04.28.2004
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


According to a recent Infonetics study, the U.S. leads the world in the number of public wireless hot spots, the majority of which use 802.11b technology to make Internet access available to roving wireless PCs within their coverage domains. Anybody who wants to start networking wirelessly in public will benefit by taking steps to prevent public access to wireless services from turning into "open season" on their machines and whatever contents they carry.

Ideally, individuals who plan to use public wireless networks should lock down their PCs to prevent unwanted access. At a bare minimum, this means following the Microsoft dictums presented so well in Protect your PC:

  • Use an Internet firewall: Your firewall should not only be installed and enabled, but as locked down as it gets, with NetBIOS, LDAP and other vulnerable protocols and associated ports shut down to public access. Scan your machine from a public hot spot using something like the Symantec or the Gibson Research scanners to make sure you're sufficiently locked down.
  • Get computer updates: Subscribe to Microsoft (and other vendors') automatic update services, and make sure you install all Critical and Important patches and fixes as soon as you can after they're released.
  • Use up-to-date antivirus software: make sure you've got good antivirus protection, and that it scans all incoming files, messages and active Web content. (Microsoft now offers pointers to discounted or free antivirus products from partners on its Web site).

It's also important to make sure that file-sharing and other forms of "easy access" (no password for common remote access programs like PCAnywhere, for example) are turned off on your machine.

Beyond these routine forms of protection, you'll want to consider using only more secure methods to access private networks or sensitive resources while you're in a wireless hot spot -- or follow Department of Defense guidelines to avoid such access under those circumstances. If you can't forgo such access altogether, this means installing and using a virtual private network (VPN) of some kind, preferably in tandem with more secure protocols like IP Security (IPSec).

Other key recommendations for safe wireless computing, courtesy of Wireless LAN security provider AirDefense at the recent Atlanta CTIA conference, include:

  • Use encrypted e-mail to avoid transmitting messages in the clear
  • Avoid insecure protocols and services (like FTP or Telnet, which also transmit entirely in the clear)
  • Think defensively about what you're doing when using public networks

If you're going to take your computer out into public hot spots, these few simple precautions can save you a world of trouble that might otherwise force its way into or onto your PC.


Ed Tittel is a full-time writer, trainer and consultant. He's written widely on security topics, including security policy tips for SearchSecurity.com, certification prep books for TICSA, CISSP and Security+, and as a contributing editor for Certification magazine. E-mail Ed at etittel@yahoo.com.


Rate this Tip
To rate tips, you must be a member of SearchSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




BROWSE BY TAG
Guest Commentary,   Wireless Network Security: Setup and Tools,   Wireless Network Protocols and Standards,   Enterprise Network Security,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Guest Commentary
Google hacking exposes a world of security flaws
Eliminating the threat of spam email attacks
Outsourcing IT services: Is it worth the security risk?
How permanent is your storage solution?
Honeypots can strengthen reconnaissance and lower intrusion noise
Freedom of speech or lack of professional responsibility?
This year compliance, next year control
Senior security member explains his position on Abagnale
Computer Security Institute's leader responds to Abagnale flap
Spokesman or poster child?

Wireless Network Protocols and Standards
Wireless network guidelines for PCI DSS compliance
Best Wireless Security Products
MMS messaging spoof hack could have global ramifications
PCI group releases wireless security guide
802.1X Port Access Control: Which version is best for you?
Wireless Security Lunchtime Learning
A wireless network vulnerability assessment checklist
How to configure VLANs with 802.1X for WLAN authorization
Risky Business: Understanding WiFi threats
Lesson 1 quiz: Risky business

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
Wired Equivalent Privacy  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Research Solutions for Network Security, Access Control and Security Threats
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts