[Cialug] Slightly OT: Interesting wireless networking article

Jeffrey C. Ollie jeff at ocjtech.us
Tue Mar 27 14:37:16 CDT 2007


On Tue, 2007-03-27 at 13:39 -0500, kristau wrote:
> Here's a concept I've considered, but I've never taken time to do a
> test implementation of it.
> 
> Set up an unencrypted WAP sitting in front of a combo firewall and
> OpenVPN server.  Configure the firewall to only allow connections to
> the VPN server.  All other traffic is dropped.  Therefore, wireless
> clients must connect to the VPN server and authenticate to get any
> further than the "sandbox."  Connecting to the VPN encrypts all
> traffic traversing the airwaves between the client and VPN server.

Yes, that would work.  I considered doing that before I bought a
WPA-capable access point.  It might be more secure than WPA since you
could use a higher-grade encryption as well.  IPSec would work as well.

Jeff
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://cialug.org/pipermail/cialug/attachments/20070327/6ebfba82/attachment.pgp


More information about the Cialug mailing list