[Gllug] [OT] How secure is MAC Address restrictions on wi-fi?

Branden Faulls bfaulls at omphe.com
Fri Jul 29 09:02:35 UTC 2005


On Mon, Jul 25, 2005 at 10:46:24AM +0100, Rev Simon Rumble wrote:
> 
> 
> To be truly secure, you want to give IPs to anyone, don't bother using
> WEP and have all clients log into a VPN before gaining access to the
> external network.
> 

Can you explain how this network layout works?  

Currently my wireless network sits in a DMZ, talking WEP, and only has an ssh pinhole to the wired 
network.  This works for most of my needs, but it feels a bit clumsy.  I'd like some services to be available across the wired and wireless and I'd 
like to achieve it with a VPN, for fun and profit.

Does the wireless machine establish a VPN connection (FreeSWAN/OpenVPN)  with the firewall(SMoothwall in this case) and then suddenly act as though 
it is on the wired 
network?  Or will the firewall just pass the VPN connection on to another VPN box on the wired segment?  How does that affect IP addresses?    

Branden Faulls 
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug




More information about the GLLUG mailing list