WEP - Wired Equivalent Privacy

WEP - Wired Equivalent Privacy WEP - Wired Equivalent Privacy WEP - Wired Equivalent Privacy WEP - Wired Equivalent Privacy WEP - Privacidad equivalente al cableado

Introduction to WEP

To solve transfer security issues on wireless networks, the 802.11 standard includes a simple data encryption mechanism called WEP (Wired equivalent privacy).

WEP has many flaws, making it vulnerable. Nevertheless, it exists as a security solution in all WiFi devices, which explains why it is so commonly used by the general public, as well as by some businesses.

There are, however, alternatives to WEP, such as WPA or WPA2.

WEP - Wired Equivalent Privacy

WEP is an 802.11 data frame encryption protocol that uses the symmetrical algorithm RC4 with 64-bit or 128-bit keys.

The concept of WEP involves setting a secret 40-bit or 128-bit key ahead of time. This secret key must be declared to each adapter on the wireless network, as well as to the access point for a network in infrastructure more. The key is used to create a pseudo-random number of the same length as the data frame.

Each data transmission is encrypted this way, by using the pseudo-random number as a "mask"; an "Exclusive OR" operation is used to combine the frame and the pseudo-random number into an enciphered datastream.

Limits of WEP

The session key shared by all stations is static, which means that to deploy a large number of WiFi stations, they must be configured using the same session key. Therefore, knowing the key is all that is needed to decrypt the signals.

Furthermore, 24 bits of the key are used only for initialisation, which means that only 40 bits of a 64-bit key, or 104 bits of a 128-bit key, are actually used for encryption.

For a 40-bit key, a brute force attack (which tries all possible keys) might not stop a hacker from quickly finding the session key. Also, a flaw detected by Fluhrer, Mantin and Shamir in the generation of the pseudo-random stream makes it possible for the session key to be discovered by storing and analysing 100 MB to 1 GB of traffic.

Therefore, WEP is insufficient for actually ensuring data privacy. Nevertheless, it is strongly recommended to use at least a 128-bit WEP key to ensure a minimum level of privacy. This can reduce the risk of intrusion by 90%.

Improving authentication

In order to more effectively manage authentication, authorisation, and accounting (AAA for short), a RADIUS server (Remote Authentication Dial-In User Service) may be used. The RADIUS protocol (defined by RFCs 2865 and 2866) is a client/server system which lets user accounts and related access permissions be centrally managed.

Setting up a VPN

For all communications which require a high level of security, it is better to use strong encryption of data by installing a virtual private network (VPN).

Last update on Thursday October 16, 2008 02:43:15 PM.This document entitled « WEP - Wired Equivalent Privacy » from Kioskea (en.kioskea.net) is made available under the Creative Commons license. You can copy, modify copies of this page, under the conditions stipulated by the licence, as this note appears clearly.

Best answers for « WEP Wired Equivalent Privacy » in :
Wi-Fi wireless network security (802.11 or WiFi) Show Adapted infrastructure The first thing to do when a wireless network is installed is to place the access points in reasonable locations depending on the desired area of coverage. However, it is not uncommon to find that the covered area ends up...
Unable to connect to a WiFi network encrypted in WPA Show Unable to connect to a WiFi network encrypted in WPA Symptoms My configuration Solution Explanation Symptoms You are unable to connect to WiFi network encrypted in WPA, even though it is listed, and with a very good signal (3 or 4...
[Myth] Does WEP encryption protect my wireless network? Show [Myth] Does WEP encryption protect my wireless network? Myth Reality Explanation Myth WEP encryption helps to protect my wireless network. Reality FALSE Explanation WEP allows in principle to avoid: That the unauthorized use...
(Wi-Fi) Wireless Configuration for your laptop Show(WiFi) Wireless Configuration for your laptop What is SSID? Wireless Channel Selection WEP How to set up your wireless connection For Acer users For Asus users For DELL users For Compaq users For Fujitsu Siemens For Gericom...
WPA / WEP forgotten or lost? ShowWPA / WEP forgotten or lost? Change the WEP key Reset WiFi router If you cannot connect to your wireless network because you have forgotten the WEP key or WPA, you can solve it by changing your access point or router WiFi. Change...
[Myth] WEP encryption protecting wireless network ShowWEP encryption protecting wireless network Myth Explanation Myth WEP encryption helps to protect my wireless network. ==Reality= FALSE Explanation WEP encryption are common for restricting unauthorized persons for using and...
Download Realtek Wireless drivers for XP (RTL8187) ShowRealtek RTL8187 Wireless 802.11g 54Mbps USB 2.0 Network Adapter SITECOM WL-168 Wireless Network USB Adapter 54g SURECOM EP-9001-g 802.11g 54M WLAN USB Adapter
Download Intel® PROSet/Wireless for XP and Vista ShowIntel PROSet Wireless Intel is the driver necessary for handling wireless networks. The list of chipsets supported are: Intel ® WiFi Link 5100 Intel ® WiFi Link 5300 Intel ® Wireless WiFi Link 4965AGN Intel ® PRO / Wireless 3945ABG...
WLAN Wireless LAN ShowWireless local area networks (WLAN) A wireless local area network (WLAN for short) is a network covering an area equivalent to that of a business's local network, about a hundred metres in range. It allows terminals within the area of coverage to...
WPA - WiFi Protected Access ShowIntroduction to WPA WPA (WiFi protected Access) WiFi network security solution offered by the WiFi Alliance, in order to fill gaps in WEP. WPA - WiFi Protected Access WPA is a "light" version of the 802.11i protocol, which relies on...
WPAN (Wireless Personal Area Network) ShowWireless Personal Area Networks (WPAN) A wireless personal area network (WPAN for short) is a low-range wireless network which covers an area of only a few dozen metres. This sort of network is generally used for linking peripheral devices (like...