Go Back   Velocity Reviews > Newsgroups > Computer Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Computer Security - Public Wireless Network together with Private Wireless Network

 
Thread Tools Search this Thread
Old 11-15-2007, 08:39 AM   #1
Default Public Wireless Network together with Private Wireless Network


My organization has a proposal from a vendor which will run 2 wireless
networks seperated by using VLAN tagging. One network is for business use
and the 2nd for guest access. The guest access communication packets will
actually traverse our physical wire through our firewalls and mulitple
security zones before leaving out to the internet. I believe this will be a
major compromise to our overall security posture but can't find
documentation to prove it.
i have found some VLAN vulnerability info but no security best practice
white papers recommending against it. Does anyone out there have a credible
source of information that could spell out the reason not to do this? Or,
any documentation on setting up a seperate wireless mesh network connected
straight to the internet for guest access? Any info would very greatly
appreciated.



PL
  Reply With Quote
Old 11-15-2007, 03:54 PM   #2
Todd H.
 
Posts: n/a
Default Re: Public Wireless Network together with Private Wireless Network
"PL" <> writes:

> My organization has a proposal from a vendor which will run 2 wireless
> networks seperated by using VLAN tagging. One network is for business
> use and the 2nd for guest access.


Does the vendor rhyme with Crisco? And the solution rhyme with
Flaironet?

If so, that's best of breed stuff.

> The guest access communication packets will actually traverse our
> physical wire through our firewalls and mulitple security zones
> before leaving out to the internet. I believe this will be a major
> compromise to our overall security posture but can't find
> documentation to prove it. i have found some VLAN vulnerability
> info but no security best practice white papers recommending against
> it. Does anyone out there have a credible source of information that
> could spell out the reason not to do this? Or, any documentation on
> setting up a seperate wireless mesh network connected straight to
> the internet for guest access? Any info would very greatly
> appreciated.


You have a legitimate concern.

The security of the installation depends on the security of the
switches involved. VLAN tagging is quite strong if you can trust the
switches and devices implementing it to be up to date with updates.

Very large corporate and commercial data centers rely on vlan tagging
to work, so if there were current vulnerabilities, you should hear a
BIG stink about it in the press.

Naturally there's no harm in pushing a hungry vendor on the point and
seeing if there's a way it can be configured to use a dedicated DSL
line or whatever so that a minimum of guest traffic traverses any part
of your network, or the least possible number of devices on your
network.

Best Regards,
--
Todd H.
http://www.toddh.net/


Todd H.
  Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
adhoc wireless network I NEED HELP PRETTY PLEAS abouttosmashmylaptop General Help Related Topics 0 04-06-2008 11:11 PM
IMHO, Digital SECAM video is better than Analog NTSC video Radium DVD Video 167 10-25-2006 04:16 AM
Setting up a Network -- Wired or Wireless? shopzero.net DVD Video 1 07-24-2006 07:18 PM
Re: adding wireless to a wired network AG A+ Certification 3 01-14-2005 08:52 AM
Re: adding wireless to a wired network Remo A+ Certification 0 01-07-2005 06:31 PM




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46