Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 72 guests and 3 members online
EH-Net News Feeds
Latest Additions
 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Wirelessarrow Article for school.
EH-Net
February 09, 2012, 11:10:20 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Advertise on EH-Net!! - Reasonable Rates, Highly Targeted Audience.
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Article for school.  (Read 5938 times)
0 Members and 1 Guest are viewing this topic.
cleanwithit0607
Newbie
*
Offline Offline

Posts: 49


View Profile
« on: April 21, 2009, 07:45:08 PM »

Hello all. I'm writing an article about securing wireless in a HIPA enviroment. I have a few topics that I'm going to talk about, let me know if I need to add anything.

-Types of attacks, and why you should secure it in a Hipa enviroment.
-Roaming Security.
-Types of Encryption.
-Radius
-TLS
-Peap
-IPSec
-Ceritificates/Autentication.

Anything else I should add. I'm just brainstorming here. Thanks in advance.
Logged

A+, Network +, Security +, Linux +,

MCP/MCTS: Vista Config.

Work in progress: CEH

Currently Reading: Hacking-The Art Of Exploitation.

Recommended book: Counter Hack Reloaded.
timmedin
Sr. Member
****
Offline Offline

Posts: 470



View Profile WWW
« Reply #1 on: April 22, 2009, 09:37:26 PM »

WEP's issues would be a nice one to add.
If you wanted to get into some details the latest issues with the WPA chop chop attack.
Also, might want to spell it HIPAA
Logged

twitter.com/timmedin | http://blog.securitywhole.com
charlottebandit
Newbie
*
Offline Offline

Posts: 49


View Profile
« Reply #2 on: June 20, 2009, 05:18:42 AM »

Hello all. I'm writing an article about securing wireless in a HIPA enviroment. I have a few topics that I'm going to talk about, let me know if I need to add anything.

-Types of attacks, and why you should secure it in a Hipa enviroment.
-Roaming Security.
-Types of Encryption.
-Radius
-TLS
-Peap
-IPSec
-Ceritificates/Autentication.

Anything else I should add. I'm just brainstorming here. Thanks in advance.


I would add that in order to make a relevant case for WLAN security and HIPAA, you need to show how each security feature maps to HIPPA compliancy.  Otherwise, you're just talking WLAN security.

How about Network Admission Control (NAC) posture assessment and profiling for WLAN clients/equipment?  This is huge in Healthcare.  Also, what about monitoring AP's specifically designed to track rogue attacks? 

IPsec??  Not seeing how adding this overhead provides more security since it's primarily used now for site-2-site VPNs and remote-access VPNs.  Dump this.

TLS, PEAP, and Certificates is really just authentication means for 802.1x WLAN deployment, which could simply be covered in a paragraph or two.  More focus should be on 802.1x for AAA services than the means to authenticate.

I'm assuming you're going to be focusing on a Controller-based Architecture, right?  If so, it would beneficial to talk about many of the security features with the Controller which also adds other Layer 2 and 3 security measures depending on Controller vendor. 
Logged

MS, CCSP, CCNP, CCDP, CEH, CHFI, CPTS
reliks
Newbie
*
Offline Offline

Posts: 2


View Profile
« Reply #3 on: July 07, 2009, 01:14:21 PM »

Aircrack-ng has just released some new proof-of-concept and other new types of attacks you may want to cover. With these being released in such an easy to utilize format, we are going to see it used a lot more.
Logged
aweSEC
Hero Member
*****
Offline Offline

Posts: 1089


View Profile
« Reply #4 on: July 08, 2009, 12:19:20 AM »

If you don't mind cleanwithit060, can you supply your finished work for public?
Logged
dalepearson
Sr. Member
****
Offline Offline

Posts: 356


View Profile WWW
« Reply #5 on: July 08, 2009, 04:27:49 AM »

Think everyone has covered the main areas, just focus on the HIPAA requirements, history or wireless networks, different options, defence and attack methods etc.

SANS published a document on securing wireless networks for HIPAA a few years ago, its been some time since I had a quick browse through it, but it might be of interest to you.

http://www.sans.org/reading_room/whitepapers/awareness/securing_wireless_networks_for_hipaa_compliance_1335?show=1335.php&cat=awareness
Logged

Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.16 | SMF © 2011, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.251 seconds with 22 queries.
 

gk_static-ad_feb2012.jpg
Global Knowledge Training: Build Security Skills to Protect and Defend

offsec_130x200-2_jan-feb2012.png
Offensive Security
AWE Live in the Caribbean!
March 5 - 9, 2012

SANS Deals 4 EH-Netters
$150 OFF Any SANS Course in Any Format!
Coupon Code: Refer_EHN
Including SANS Phoenix 2012, SANS 2012
Recent Forum Topics

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!

Vote For EH-Net

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2012 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.