Wireless Network Security Lab Last Update 2011.06.01 1.0.0 1Copyright 2011 Kenneth M. Chipps Ph.D. www.chipps.com.

Slides:



Advertisements
Similar presentations
CY-SWR1100 Dual Band Wireless N Router
Advertisements

DSL-2730B, DSL-2740B, DSL-2750B.
Security in Wireless Networks Juan Camilo Quintero D
Filtering and Security By Mohammad Shanehsaz June 2004.
Networking By: Matt Motl… Programmer Brent Everson… Programming Mentor.
Crack WPA Lab Last Update Copyright 2014 Kenneth M. Chipps Ph.D.
1 Basic Installation and GUI Tech Basic Installation and GUI : Objectives  Installing the Quadro  Configuring the Quadro  Installing IP phones.
Ver AB Terms Host: The computer to be tested Gateway: The router connected to that part of the network PDU: Protocol Data Unit Perform Network Fault.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Configure a Wireless Router LAN Switching and Wireless – Chapter 7.
Panasonic Computer Products Europe CF-08 Live Set up.
DVG-N5402SP.
DHP-306AV & DHP-W306AV. Agenda: How to change Encryption on a DHP-306AV How to change the Device Password on a DHP-306AV What will happen if the Device.
CCNA Exploration Semester 3 Modified by Profs. Ward and Cappellino
Copyright Kenneth M. Chipps Ph.D. How to Use SNMP to Collect Network Data Last Update
How to configure Linksys WRT-120N wireless Access-Point(AP) router
1 Configuring Linksys Wireless Router Prof. Valencia Community College.
hotEx RADIUS Manager Installation
Integrity Check As You Well Know, It Is A Violation Of Academic Integrity To Fake The Results On Any.
Static Routing Last Update Copyright Kenneth M. Chipps Ph.D.
1. A router is a device in computer networking that forwards data packets to their destinations, based on their addresses. The work a router does it called.
Configuring Linksys Wireless Ethernet Bridge Prof. Valencia Community College.
Cisco Confidential 1 © 2011 Cisco and/or its affiliates. All rights reserved.
Thick v Thin Access Points Lab Last Update Copyright 2014 Kenneth M. Chipps Ph.D.
Technical Training: DIR-615
Connecting to Secure Wi-Fi in QSB Boardroom Locations 01 September 2013.
Technical Training: DAP-1360 Wireless N Access Point DAP-1360.
RADIUS Server (Brocade Controller)
Dainis Krakops’ Wireless Network MOTOROLA SURFboard SB5101 CABLE MODEM Enables cable operators to provide broadband Internet connection for my LAN devices.
TAX-AIDE Network Router Setup Network Printer Setups July SMT/TCS Training - Dallas1.
Ch. 5 – Access Points. Overview Access Point Connection.
Linksys LNKWET11 Setup b Ethernet Converter Step 1. Annotate your Computer’s ethernet IP address. Step 2. Change the Ethernet IP Address/subnet/router.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 IT Essentials PC Hardware and Software 4.1 Instructional Resource Chapter.
Integrity Check As You Well Know, It Is A Violation Of Academic Integrity To Fake The Results On Any.
How to configure Linksys WRT-120N wireless Access-Point(AP) router
© 2007 Cisco Systems, Inc. All rights reserved.ISCW-Mod9_L8 1 Network Security 2 Module 6 – Configure Remote Access VPN.
DVG-G5402SP D-Link VoIP Wireless Router
A+ Guide to Software: Managing, Maintaining, and Troubleshooting, 5e
Lab How to Use WANem Last Update Copyright 2011 Kenneth M. Chipps Ph.D. 1.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 6 Switch Configuration.
Lexmark Wireless Printer Adaptor Instructions Step 1. For a Mac, go to network preferences/ select built-in-ethernet and click on TCP/IP tab and annotate.
Citrix Virtualization Last Update Copyright 2011 Kenneth M. Chipps Ph.D.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Configure a Wireless Router LAN Switching and Wireless – Chapter 7.
DSL-2544N Dual Band Wireless N600 Gigabit ADSL2+ Modem Router
Environment => Office, Campus, Home  Impact How, not Whether A Checklist for Wireless Access Points.
1 C-DAC/Kolkata C-DAC All Rights Reserved Computer Security.
Wireless Networks and the NetSentron By: Darren Critchley.
1/28/2010 Network Plus Unit 4 WAP Configuration WAP Configuration In this section we will discuss basic Wireless Access configuration using a Linksys.
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
HotEx Radius Manager Installation. hotEx RADIUS Manager Network Diagram.
9: Troubleshooting Your Network
DHP Agenda: How to Access Web Interface of the DHP-1320 on Access Point Mode How to Access Web Interface of the DHP-1320 on Router Mode How to Change.
Configuring Security Featuers For Wi-Fi (Wireless) Broad Band Access Recently Intelligence agencies have found that terrorists were using unsecured wi-fi.
Lesson 10: Configuring Network Settings MOAC : Configuring Windows 8.1.
CISCO PACKET TRACER By:- Ankita Rawat Sohit Mehta Sukhwinder Singh.
VLANs Last Update Copyright Kenneth M. Chipps Ph.D.
Summary: Unlike WindowsXP, Windows2000 wireless client utilities are different from vendor to vendor and even within versions of a vendor’s client utility.
Module 5 Configuring Wireless Network Connections.
Copyright 2009 Kenneth M. Chipps Ph.D. Addressing in Networks Last Update
How To Set Up A Wireless Network. What is a wireless network  A wireless network is a computer network that allows computers and other electronic devices.
LINCWorks Mesh Networking User Guide. This user guide will give a brief overview of mesh networking followed by step by step instructions for configuring.
How to Use LINCWorks as a Wireless Repeater For additional help please contact: Paul Peterson
Module Overview Overview of Wireless Networks Configure a Wireless Network.
Example of a LAN Last Update Copyright 2009 Kenneth M. Chipps Ph.D.
LAN Connections.
Instructor Materials Chapter 6 Building a Home Network
How to Use Packet Tracer
Methods of Securing LANs
Radio Frequency Equipment
How To Set Up A Wireless Network
SY604 NAT PPPoE Configuration
Presentation transcript:

Wireless Network Security Lab Last Update Copyright 2011 Kenneth M. Chipps Ph.D.

Method Used This lab will be done in Packet Tracer 5.2 or later Start Packet Tracer 2 Copyright 2011 Kenneth M. Chipps Ph.D.

Create the Lab Network Create this network in it Copyright 2011 Kenneth M. Chipps Ph.D. 3

Create the Lab Network Copyright 2011 Kenneth M. Chipps Ph.D. 4

Create the Lab Network The connections to the Server-PT devices from the Access Point switch ports are straight-through cables Copyright 2011 Kenneth M. Chipps Ph.D. 5

Configure the Access Point Click on the Linksys WRT300N Wireless Access Point –Open the GUI tab and ensure that DHCP is set to Automatic Configuration Leave the Access Point’s IP address at the default value of /24 Enable the DHCP Server and leave the Start IP Address as Set the maximum number of DHCP clients to 4 Copyright 2011 Kenneth M. Chipps Ph.D. 6

Configure the Wireless Client Open the Physical tab of the PC-PT computer and turn the power off Remove the Ethernet module and replace it with the Linksys WMP-300N wireless module Turn the power back on After a few seconds you should have a wireless connection to the access point Copyright 2011 Kenneth M. Chipps Ph.D. 7

Enable WEP The original security method used in wireless LANs was WEP Let’s see how it is enabled On the WRT-300N access point select the Config tab –Change the SSID to CCNP –Enable WEP Authentication Use as the WEP key value Copyright 2011 Kenneth M. Chipps Ph.D. 8

Enable WEP On the PC using the Wireless Settings Change the SSID to CCNP Enable WEP Authentication Use as the WEP key value Copyright 2011 Kenneth M. Chipps Ph.D. 9

Configure the Web Server On the Web Server Open the Desktop tab Click the IP configuration icon Change the static settings of the Web Server as follows Copyright 2011 Kenneth M. Chipps Ph.D. 10

Configure the Web Server Copyright 2011 Kenneth M. Chipps Ph.D. 11

Configure the Web Server Open the Config tab disable all service except for HTTP and HTTPS Copyright 2011 Kenneth M. Chipps Ph.D. 12

Configure the Web Server Copyright 2011 Kenneth M. Chipps Ph.D. 13

Check Connectivity Open the wireless host’s Web Browser and verify that you can access the web server using the IP address If you are successful, your browser page should look this Copyright 2011 Kenneth M. Chipps Ph.D. 14

Check Connectivity Copyright 2011 Kenneth M. Chipps Ph.D. 15

Enable WPA with TKIP WEP was replaced by WPA using TKIP Let’s see how WPA works On the wireless access point, enable WPA-PSK authentication Set the Data Encryption type to TKIP Use the PassPhase abcd1234 Copyright 2011 Kenneth M. Chipps Ph.D. 16

Enable WPA with TKIP On the wireless host, enable WPA-PSK authentication Use the PassPhase abcd1234 Ensure that the Data Encryption type is set to TKIP Copyright 2011 Kenneth M. Chipps Ph.D. 17

Check Connectivity After the wireless connection between the access point and the wireless host is resumed Verify connectivity by pinging the web server at Copyright 2011 Kenneth M. Chipps Ph.D. 18

Enable WPA with AES TKIP was soon replaced in WPA by AES Let’s see how this change is made On the wireless access point, enable WPA-PSK authentication Set the Data Encryption type to AES Use the PassPhase abcd1234 Copyright 2011 Kenneth M. Chipps Ph.D. 19

Enable WPA with AES On the wireless host, enable WPA-PSK authentication Ensure that the Data Encryption type is set to AES Use the PassPhase abcd1234 Copyright 2011 Kenneth M. Chipps Ph.D. 20

Check Connectivity After the wireless connection between the access point and the wireless host is resumed Verify connectivity by pinging the web server at Copyright 2011 Kenneth M. Chipps Ph.D. 21

Enable WPA2 There are two versions of WPA2 –WPA2-PSK –WPA2-Enterprise We have just seen WPA-PSK enabled above at all it is is WPA with TKIP replaced by AES In other words PSK or pre-shared key As in WEP and WPA, WPA-PSK is just a password based system Copyright 2011 Kenneth M. Chipps Ph.D. 22

Enable WPA2 As is true of any password based system, the password can be lost This requires all the devices be changed A better solution is to use a RADIUS server to enable WPA2-Enterprise Let’s see how this is done Copyright 2011 Kenneth M. Chipps Ph.D. 23

Configure the RADIUS Server Open the Desktop tab on the RADIUS Server and click the IP configuration icon Change the static settings of the RADIUS Server as follows Copyright 2011 Kenneth M. Chipps Ph.D. 24

Configure the RADIUS Server Copyright 2011 Kenneth M. Chipps Ph.D. 25

Configure the RADIUS Server Open the Config tab –Disable all services except AAA Click on the AAA service –Turn the AAA service on and leave the RADIUS port set to 1645 –Add a RADIUS client Linksys Access Point with an IP address of and a secret key ccnp1234 –Add a user student with a password cisco Copyright 2011 Kenneth M. Chipps Ph.D. 26

Configure the RADIUS Server Copyright 2011 Kenneth M. Chipps Ph.D. 27

Configure the Access Point On the access point –Change the Authentication type to WPA2 –Configure the RADIUS server IP address as –Set the Shared Secret key to ccnp1234 –Set the Data Encryption Type to AES Copyright 2011 Kenneth M. Chipps Ph.D. 28

Configure the Access Point Copyright 2011 Kenneth M. Chipps Ph.D. 29

Configure the Wireless Client On the Wireless Client –Change the Authentication Type to WPA2 Change the Data Encryption Type to AES –Enter the User ID student –Enter the password cisco Copyright 2011 Kenneth M. Chipps Ph.D. 30

Check Connectivity You should now have connectivity between the wireless host and the access point Verify this by connecting to the web server from the browser on the wireless host If you do not have connectivity to the web server, double-check all of your settings on access point, wireless host, and RADIUS server Copyright 2011 Kenneth M. Chipps Ph.D. 31

Source Most of this lab is stolen from John Morgan, but its ok, he said I could Copyright 2011 Kenneth M. Chipps Ph.D. 32