WPA(2)

Wi-Fi Protected Access (WPA) is a subset of the IEEE 802.11i standard. WPA2 (IEEE 802.11i) is a wireless security standard that defines stronger encryption, authentication and key management than WPA.

Key differences between WPA(2) and WEP are improved data encryption and user authentication.

Encryption

Both WPA and WPA2 improve data encryption by using Temporal Key Integrity Protocol (TKIP), Message Integrity Check (MIC) and IEEE 802.1x. In addition to TKIP, WPA2 also uses Advanced Encryption Standard (AES) in the Counter mode with Cipher block chaining Message authentication code Protocol (CCMP) to offer stronger encryption.

Temporal Key Integrity Protocol (TKIP) uses 128-bit keys that are dynamically generated and distributed by the authentication server. It includes a per-packet key mixing function, a Message Integrity Check (MIC) named Michael, an extended initialization vector (IV) with sequencing rules, and a re-keying mechanism.

TKIP regularly changes and rotates the encryption keys so that the same encryption key is never used twice. The RADIUS server distributes a Pairwise Master Key (PMK) key to the AP that then sets up a key hierarchy and management system, using the pair-wise key to dynamically generate unique data encryption keys to encrypt every data packet that is wirelessly communicated between the AP and the wireless clients. This all happens in the background automatically.

WPA2 AES (Advanced Encryption Standard) is a block cipher that uses a 256-bit mathematical algorithm called Rijndael.

The Message Integrity Check (MIC) is designed to prevent an attacker from capturing data packets, altering them and resending them. The MIC provides a strong mathematical function in which the receiver and the transmitter each compute and then compare the MIC. If they do not match, it is assumed that the data has been tampered with and the packet is dropped.

By generating unique data encryption keys for every data packet and by creating an integrity checking mechanism (MIC), TKIP makes it much more difficult to decode data on a Wi-Fi network than WEP, making it difficult for an intruder to break into the network.

The encryption mechanisms used for WPA and WPA-PSK are the same. The only difference between the two is that WPA-PSK uses a simple common password, instead of user-specific credentials. The common-password approach makes WPA-PSK susceptible to brute-force

137

Page 137
Image 137
ZyXEL Communications MWR102 manual WPA2, Encryption, 137

MWR102 specifications

ZyXEL Communications MWR102 is a versatile portable wireless router designed to provide reliable internet connectivity for mobile users. This compact device caters to individuals and small teams who require internet access on the go, making it an ideal solution for business travelers, outdoor enthusiasts, and temporary setups in various environments.

One of the standout features of the MWR102 is its 3G and 4G LTE compatibility, allowing users to connect to mobile broadband networks with ease. This ensures that users can enjoy fast internet speeds and stable connections, regardless of their location. Additionally, the router supports multiple wireless standards, including 802.11b/g/n, ensuring compatibility with a wide range of devices such as smartphones, laptops, and tablets.

The MWR102 is equipped with a built-in battery that provides up to 5 hours of operation on a single charge, making it a perfect companion for situations where access to a power source is limited. It also features a USB port that enables users to charge devices like smartphones or tablets, adding to its functionality as a portable hub. The compact design of the MWR102 makes it easy to carry in a bag or pocket, ensuring that users can stay connected wherever they go.

Another significant aspect of the MWR102 is its ease of use. The device can be set up quickly without the need for complex configurations. It also includes a simple web-based interface that allows users to manage their network settings with minimal hassle. The router supports up to 10 users at a time, making it suitable for small groups needing simultaneous access to the internet.

Security is also a priority with the MWR102, which offers WPA2 encryption to protect data transmission over the wireless network. This feature is essential for ensuring a secure connection, particularly when accessing sensitive information online.

In summary, ZyXEL Communications MWR102 is a feature-rich portable wireless router that combines 3G/4G connectivity, battery operation, and robust security in a compact design. It is an excellent choice for anyone looking for reliable internet access while on the move. Whether for business or leisure, the MWR102 ensures that staying connected is convenient and straightforward.