Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 33 guests and 1 member online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Wirelessarrow Is WPA-PSK2 a decent connection or should I get something stronger?
EH-Net
May 23, 2013, 02:00:30 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Is WPA-PSK2 a decent connection or should I get something stronger?  (Read 4723 times)
0 Members and 1 Guest are viewing this topic.
Bryce
Newbie
*
Offline Offline

Posts: 5


View Profile
« on: April 26, 2010, 04:20:47 PM »

Just wondering if WPA-PSK2 is a decent connection or should I try and get something stronger?  90% of my street is using this type of encryption and I'm not worried about anyone getting in, but I just wanna see about getting something stronger.

And also, do you use VPNs whenever you are n public wifi to get back to your home that's secured or what?

And why do I find myself packet sniffing, etc at the library.  What do I think I'm going to find Sad.  I honestly don't know why I do it, maybe just because I can lol.  Not like I can read packets anyways lol.
Logged
ajohnson
Recruiters
Hero Member
*
Offline Offline

Posts: 1057


aka dynamik


View Profile WWW
« Reply #1 on: April 26, 2010, 04:42:05 PM »

It's going to be as strong as they key you choose to use. It's not going to be secure if you use 'a' as your key. I get something from here and copy-paste into my devices: https://www.grc.com/passwords.htm

I VPN back somewhere if I'm using the connection for something I wouldn't want people to eavesdrop on. If you're just using it to check the news, watch YouTube, etc. it may not be necessary. Be wary of what cookies are transmitted or any other service that'll be logging on in the background though.

Packet sniffing is always a good thing to do (assuming you have permission and are doing so ethically). It's good to get used to seeing how things work.
Logged

WIP: GCFA | www.infosiege.net | @infosiege

The day you stop learning is the day you start becoming obsolete.
Bryce
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #2 on: April 26, 2010, 05:11:16 PM »

Only reason I'd be sniffing would be to just learn how to read packets and all.

I use a pretty secure key, just wondering if I should get a better encryption or whatever.  I was wondering if I should use KeePass or something and change ALL my passwords to some random 32 digit key or something then use a password that's strong, but I can remember as the key to the database.  What would you suggest about that?

I fired up WireShark on my network and I was flooded with packets.  95% of it was from my brother's xbox though lol.
Logged
ajohnson
Recruiters
Hero Member
*
Offline Offline

Posts: 1057


aka dynamik


View Profile WWW
« Reply #3 on: April 26, 2010, 10:00:07 PM »

Using a key like what I posted is going to give you a very secure connection. One of the main advantages of moving to Enterprise from PSK is key distribution, which isn't a big concern when you only have a small number of users.

You'll want to check out this book: http://www.wiresharkbook.com/

The capture and/or display filters will help you work with the data much more easily. It's overwhelming if you just look at everything simultaneously.

I like KeePass a lot. I think 32 random characters is overkill for most sites. Password length and complexity should be proportionate to the sensitivity of data/level of access. Random forums probably don't need passwords as strong as the ones for your bank accounts. It's also important to reuse passwords as little as possible. If a forum gets compromised, you don't want that to be the same info for critical accounts.

You might want to consider passphrases as well. They're much more easier to remember, yet they are still complex from a guessing perspective.

For example: Dinner?Pizza&17Beers!
Logged

WIP: GCFA | www.infosiege.net | @infosiege

The day you stop learning is the day you start becoming obsolete.
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.06 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.