Skip to main content

NASA uses OpenBSD; overcomes 802.11b security flaws

posted onSeptember 3, 2001
by hitbsecnews

The network security group in the NASA Advanced Supercomputing (NAS) Division at Ames Research Center, in California's Silicon Valley uses OpenBSD and other open source software for its wireless firewall gateway implementation. They successfully installed a secure interoperable wireless network addressing the well-known problems of the 802.11b standard wireless systems.

The NAS security group believed that the wireless network
provided provide no substantial security protection in any of three
important respects:

  1. Wireless card hardware addresses cannot be trusted as tools to identify
    a user;
  2. The signal coverage perimeter cannot be easily
    limited to conform to an organization's physical control perimeter;
  3. Wired Equivalent Privacy (WEP) encryption of data sent
    between a laptop and an access point can be cracked, regardless of key
    length.
  4. Deriving a WEP encryption key from
    eavesdropped ciphertext and a method for decrypting WEP traffic without
    ever needing to derive the key are well documented.

All 802.11b security features were
disabled, because they consume resources without delivering any real security.
All the services reached via the wireless network without authentication provide their
own authentication and encryption. The NAS division uses OpenBSD, Apache
httpd, ISC's DHCP, and IPF firewall software.

More information about the Wireless Firewall Gateway implementation
is available
here.

Read
the announcement
at the NAS webpage.

Source

Tags

Networking

You May Also Like

Recent News

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th

Friday, June 7th

Thursday, June 6th

Wednesday, June 5th