Flux rss

WEP - Wired Equivalent Privacy

Introduction to WEP

To solve transfer security issues on wireless networks, the 802.11 standard includes a simple data encryption mechanism called WEP (Wired equivalent privacy).

WEP has many flaws, making it vulnerable. Nevertheless, it exists as a security solution in all WiFi devices, which explains why it is so commonly used by the general public, as well as by some businesses.

There are, however, alternatives to WEP, such as WPA or WPA2.

WEP - Wired Equivalent Privacy

WEP is an 802.11 data frame encryption protocol that uses the symmetrical algorithm RC4 with 64-bit or 128-bit keys.

The concept of WEP involves setting a secret 40-bit or 128-bit key ahead of time. This secret key must be declared to each adapter on the wireless network, as well as to the access point for a network in infrastructure more. The key is used to create a pseudo-random number of the same length as the data frame.

Each data transmission is encrypted this way, by using the pseudo-random number as a "mask"; an "Exclusive OR" operation is used to combine the frame and the pseudo-random number into an enciphered datastream.

Limits of WEP

The session key shared by all stations is static, which means that to deploy a large number of WiFi stations, they must be configured using the same session key. Therefore, knowing the key is all that is needed to decrypt the signals.

Furthermore, 24 bits of the key are used only for initialisation, which means that only 40 bits of a 64-bit key, or 104 bits of a 128-bit key, are actually used for encryption.

For a 40-bit key, a brute force attack (which tries all possible keys) might not stop a hacker from quickly finding the session key. Also, a flaw detected by Fluhrer, Mantin and Shamir in the generation of the pseudo-random stream makes it possible for the session key to be discovered by storing and analysing 100 MB to 1 GB of traffic.

Therefore, WEP is insufficient for actually ensuring data privacy. Nevertheless, it is strongly recommended to use at least a 128-bit WEP key to ensure a minimum level of privacy. This can reduce the risk of intrusion by 90%.

Improving authentication

In order to more effectively manage authentication, authorisation, and accounting (AAA for short), a RADIUS server (Remote Authentication Dial-In User Service) may be used. The RADIUS protocol (defined by RFCs 2865 and 2866) is a client/server system which lets user accounts and related access permissions be centrally managed.

Setting up a VPN

For all communications which require a high level of security, it is better to use strong encryption of data by installing a virtual private network (VPN).

Last update on Thursday October 16, 2008 02:43:15 PM.

This document entitled « WEP - Wired Equivalent Privacy » from Kioskea (en.kioskea.net) is made available under the Creative Commons license. You can copy, modify copies of this page, under the conditions stipulated by the licence, as this note appears clearly.
Wireless newtorks - Wireless local area networks (WLAN) A wireless local area network (WLAN for short) is a network covering an area equivalent to that of a business's local network, about a hundred metres in range. It allows terminals within the area of coverage to be linked to one another. There are... en.kioskea.net/wireless/wlan.php3
(Wi-Fi) Wireless Configuration for your laptop (WiFi) Wireless Configuration for your laptop What is SSID? Wireless Channel Selection WEP How to set up your wireless connection For Acer users For Asus users For DELL users For Compaq users For Fujitsu Siemens For Gericom... en.kioskea.net/faq/sujet-294-wi-fi-wireless-configuration-for-your-laptop
Wireless Network g Hello, At home we have a wireless connection within the house 3 Computers Two have vista one XP (Mine) We have static IP addresses and the network is protect using WEP We are using netgear router The computer that is right next to the router is fine... en.kioskea.net/forum/affich-25020-wireless-network-g
Error Message: Windows cannot run Wireless ConnectionUse Windows to configure your wireless settings Launch Windows Zero Configuration Error Message: Windows cannot run Wireless Connection If you receive an error message that states that Windows cannot run your connection while trying to... en.kioskea.net/faq/sujet-312-error-message-windows-cannot-run-wireless-connection
Securing your wireless networkSecuring your wireless network What is Wi-Fi? Ad-hoc mode Infrastructure mode connection Security and protection What is Wi-Fi? Wi-Fi regroups various IEEE802.11 standards and technologies, using radio waves to provide reliable... en.kioskea.net/faq/sujet-431-securing-your-wireless-network
WirelessHello, my daughter has been given a pc,i have bought a wireless adapter.I have put the wep key in and it says its connected,but its only sending and not recieving,is there anything i can do to fix it? thanks en.kioskea.net/forum/affich-23255-wireless
I can't connect via wireless and cablehello, so my problem is that I can't connect to the internet ofcourse. I've got an HP Compaq Presario C700 laptop and I can't connect to the wireless network I don't know why.. plz tell me and if it includes WEP or WPA or that AES... en.kioskea.net/forum/affich-32093-i-can-t-connect-via-wireless-and-cable
TROUBLE WITH LINKSYS ROUTER WRT54GSHello, I have a new Linksys router WRT54gs and a new Dell laptop. The router works well with the cable attached but when I go to wireless I get a strong signal but unable to get on the internet with WEP security. With security disabled the wireless... en.kioskea.net/forum/affich-10899-trouble-with-linksys-router-wrt54gs
Cryptography - PGP (Pretty Good Privacy) PGP (Pretty Good Privacy) is a cryptosystem (encryption system) that was invented by Philip Zimmermann, a computer analyst. From 1984 to 1991, Philip Zimmermann worked on a program that made it possible to run RSA on personal computers (PGP).... en.kioskea.net/crypto/pgp.php3
Wireless networks - Wireless Personal Area Networks (WPAN) A wireless personal area network (WPAN for short) is a low-range wireless network which covers an area of only a few dozen metres. This sort of network is generally used for linking peripheral devices (like printers, cellphones, and home appliances)... en.kioskea.net/wireless/wpan.php3
Wireless Networks - Wireless Metropolitan Area Networks (WMAN) A Wireless Metropolitan Area Network (WMAN) is also known as a Wireless Local Loop (WLL). WMANs are based on the IEEE 802.16 standard. Wireless local loop can reach effective transfer speeds of 1 to 10 Mbps within a range of 4 to 10 kilometres, which... en.kioskea.net/wireless/wman.php3