ͨ³£¼ÆËã»ú×éÍøµÄ´«Êäý½éÖ÷ÒªÒÀÀµÍÀ»ò¹âÀ£¬¹¹³ÉÓÐÏß¾ÖÓòÍø¡£µ«ÓÐÏßÍøÂçÔÚijЩ³¡ºÏÒªÊܵ½²¼ÏßµÄÏÞÖÆ£º²¼Ïß¡¢¸ÄÏß¹¤³ÌÁ¿´ó£»Ïß·ÈÝÒ×Ë𻵣»ÍøÖеĸ÷½Úµã²»¿ÉÒÆ¶¯¡£ÌرðÊǵ±Òª°ÑÏàÀë½ÏÔ¶µÄ½ÚµãÁª½ÓÆðÀ´Ê±£¬¼ÜÉèרÓÃͨÐÅÏß·µÄ²¼ÏßÊ©¹¤ÄѶȴ󡢷ÑÓøߡ¢ºÄʱ³¤,¶ÔÕýÔÚѸËÙÀ©´óµÄÁ¬ÍøÐèÇóÐγÉÁËÑÏÖØµÄÆ¿¾±×èÈû¡£WLAN¾ÍÊǽâ¾öÓÐÏßÍøÂçÒÔÉÏÎÊÌâ¶ø³öÏֵģ¬ WLANΪWireless LANµÄ¼ò³Æ£¬¼´ÎÞÏß¾ÖÓòÍø¡£ÎÞÏß¾ÖÓòÍøÊÇÀûÓÃÎÞÏß¼¼ÊõʵÏÖ¿ìËÙ½ÓÈëÒÔÌ«ÍøµÄ¼¼Êõ¡£ÓëÓÐÏßÍøÂçÏà±È£¬WLAN×îÖ÷ÒªµÄÓÅÊÆÔÚÓÚ²»ÐèÒª²¼Ïߣ¬¿ÉÒÔ²»Êܲ¼ÏßÌõ¼þµÄÏÞÖÆ£¬Òò´Ë·Ç³£ÊʺÏÒÆ¶¯°ì¹«Óû§µÄÐèÒª£¬¾ßÓйãÀ«Êг¡Ç°¾°¡£Ä¿Ç°ËüÒѾ´Ó´«Í³µÄÒ½ÁƱ£½¡¡¢¿â´æ¿ØÖƺ͹ÜÀí·þÎñµÈÌØÊâÐÐÒµÏò¸ü¶àÐÐÒµÍØÕ¹¿ªÈ¥£¬ÉõÖÁ¿ªÊ¼½øÈë¼ÒÍ¥ÒÔ¼°½ÌÓý»ú¹¹µÈÁìÓò¡£
ÎÞÏß¾ÖÓòÍøÓ봫ͳÓÐÏß¾ÖÓòÍøÏà±ÈÓÅÊÆ²»ÑÔ¶øÓ÷£¬Ëü¿ÉʵÏÖÒÆ¶¯°ì¹«¡¢¼ÜÉèÓëά»¤¸üÈÝÒ׵ȡ£Frost&Sullivan¹«Ë¾Ô¤²âÎÞÏß¾ÖÓòÍøÂçÊг¡ÔÚ2005Äêµ×½«´ïµ½50ÒÚÃÀÔª¡£ÔÚÈç´Ë¾Þ´óµÄÓ¦ÓÃÓëÊг¡ÃæÇ°£¬ÎÞÏß¾ÖÓòÍøÂ簲ȫÎÊÌâ¾ÍÏÔµÃÓÈÎªÖØÒª¡£ÈËÃDz»½ûÒªÎÊ£ºÍ¨¹ýµç²¨½øÐÐÊý¾Ý´«ÊäµÄÎÞÏß¾ÖÓòÍøµÄ°²È«ÐÔÓб£ÕÏÂð?
¶ÔÓÚÎÞÏß¾ÖÓòÍøµÄÓû§Ìá³öÕâÑùµÄÒÉÎÊ¿ÉÒÔ˵²»ÎÞ¸ù¾Ý£¬ÒòΪÎÞÏß¾ÖÓòÍø²ÉÓù«¹²µÄµç´Å²¨×÷ÎªÔØÌ壬¶øµç´Å²¨Äܹ»´©Ô½Ì컨°å¡¢²£Á§¡¢Â¥²ã¡¢×©¡¢Ç½µÈÎïÌ壬Òò´ËÔÚÒ»¸öÎÞÏß¾ÖÓòÍø½ÓÈëµã(Access Point)µÄ·þÎñÇøÓòÖУ¬ÈκÎÒ»¸öÎÞÏ߿ͻ§¶Ë¶¼¿ÉÒÔ½ÓÊÕµ½´Ë½ÓÈëµãµÄµç´Å²¨Ðźš£ÕâÑù£¬·ÇÊÚȨµÄ¿Í»§¶ËÒ²ÄܽÓÊÕµ½Êý¾ÝÐźš£Ò²¾ÍÊÇ˵£¬ÓÉÓÚ²ÉÓõç´Å²¨À´´«ÊäÐźţ¬·ÇÊÚȨÓû§ÔÚÎÞÏß¾ÖÓòÍø£¨Ïà¶ÔÓÚÓÐÏß¾ÖÓòÍø£©ÖÐÇÔÌý»ò¸ÉÈÅÐÅÏ¢¾ÍÈÝÒ׵öࡣËùÒÔΪÁË×èÖ¹ÕâЩ·ÇÊÚȨÓû§·ÃÎÊÎÞÏß¾ÖÓòÍøÂ磬´ÓÎÞÏß¾ÖÓòÍøÓ¦ÓõĵÚÒ»Ì쿪ʼ±ãÒýÈëÁËÏàÓ¦µÄ°²È«´ëÊ©¡£
ʵ¼ÊÉÏ£¬ÎÞÏß¾ÖÓòÍø±È´ó¶àÊýÓÐÏß¾ÖÓòÍøµÄ°²È«ÐÔ¸ü¸ß¡£ÎÞÏß¾ÖÓòÍø¼¼ÊõÔçÔÚµÚ¶þ´ÎÊÀ½ç´óÕ½ÆÚ¼ä±ã³öÏÖÁË£¬ËüÔ´×ÔÓÚ¾ü·½Ó¦Óá£Ò»Ö±ÒÔÀ´£¬°²È«ÐÔÎÊÌâÔÚÎÞÏß¾ÖÓòÍøÉ豸¿ª·¢¼°½â¾ö·½°¸Éè¼ÆÊ±£¬¶¼µÃµ½Á˳ä·ÖµÄÖØÊÓ¡£Ä¿Ç°£¬ÎÞÏß¾ÖÓòÍøÂç²úÆ·Ö÷Òª²ÉÓõÄÊÇIEEE(ÃÀ¹úµçÆøºÍµç×Ó¹¤³Ìʦлá)802.11b¹ú¼Ê±ê×¼£¬´ó¶àÓ¦ÓÃDSSS£¨Direct Sequence Spread Spectrum£¬Ö±½ÓÐòÁÐÀ©Æµ£©Í¨Ðż¼Êõ½øÐÐÊý¾Ý´«Ê䣬¸Ã¼¼ÊõÄÜÓÐЧ·ÀÖ¹Êý¾ÝÔÚÎÞÏß´«Êä¹ý³ÌÖжªÊ§¡¢¸ÉÈÅ¡¢ÐÅÏ¢×èÈû¼°ÆÆ»µµÈÎÊÌâ¡£802.11±ê×¼Ö÷ÒªÓ¦ÓÃÈýÏȫ¼¼ÊõÀ´±£ÕÏÎÞÏß¾ÖÓòÍøÊý¾Ý´«ÊäµÄ°²È«¡£µÚÒ»ÏîΪSSID£¨Service Set Identifier£©¼¼Êõ¡£¸Ã¼¼Êõ¿ÉÒÔ½«Ò»¸öÎÞÏß¾ÖÓòÍø·ÖΪ¼¸¸öÐèÒª²»Í¬Éí·ÝÑéÖ¤µÄ×ÓÍøÂ磬ÿһ¸ö×ÓÍøÂç¶¼ÐèÒª¶ÀÁ¢µÄÉí·ÝÑéÖ¤£¬Ö»ÓÐͨ¹ýÉí·ÝÑéÖ¤µÄÓû§²Å¿ÉÒÔ½øÈëÏàÓ¦µÄ×ÓÍøÂ磬·Àֹδ±»ÊÚȨµÄÓû§½øÈë±¾ÍøÂ磻µÚ¶þÏîΪMAC£¨Media Access Control£©¼¼Êõ¡£Ó¦ÓÃÕâÏî¼¼Êõ£¬¿ÉÔÚÎÞÏß¾ÖÓòÍøµÄÿһ¸ö½ÓÈëµã£¨Access Point£©ÏÂÉèÖÃÒ»¸öÐí¿É½ÓÈëµÄÓû§µÄMACµØÖ·Çåµ¥£¬MACµØÖ·²»ÔÚÇåµ¥ÖеÄÓû§£¬½ÓÈëµã£¨Access Point£©½«¾Ü¾øÆä½ÓÈëÇëÇó£»µÚÈýÏîΪWEP£¨Wired Equivalent Privacy£©¼ÓÃܼ¼Êõ¡£ÒòΪÎÞÏß¾ÖÓòÍøÂçÊÇͨ¹ýµç²¨½øÐÐÊý¾Ý´«ÊäµÄ£¬´æÔڵ粨й¶µ¼ÖÂÊý¾Ý±»½ØÌýµÄ·çÏÕ¡£WEP°²È«¼¼ÊõÔ´×ÔÓÚÃûΪRC4µÄRSAÊý¾Ý¼ÓÃܼ¼Êõ£¬ÒÔÂú×ãÓû§¸ü¸ß²ã´ÎµÄÍøÂ簲ȫÐèÇó¡£
ÏÂÃæÎÒÃÇ´ÓÎÞÏß¾ÖÓòÍø°²È«¼¼ÊõµÄ·¢Õ¹Àú³ÌÀ´¶ÔÎÞÏß¾ÖÓòÍøÖвÉÓõÄÖ÷Òª°²È«¼¼Êõ¼°·¢Õ¹·½Ïò½øÐнéÉÜ¡£
Ò»¡¢ ÔçÆÚ»ù±¾µÄÎÞÏß¾ÖÓòÍø°²È«¼¼Êõ
ÎÞÏßÍø¿¨ÎïÀíµØÖ·£¨MAC£©¹ýÂË£º
ÿ¸öÎÞÏß¹¤×÷Õ¾Íø¿¨¶¼ÓÉΩһµÄÎïÀíµØÖ·±êʾ£¬¸ÃÎïÀíµØÖ·±àÂ뷽ʽÀàËÆÓÚÒÔÌ«ÍøÎïÀíµØÖ·£¬ÊÇ48λ¡£ÍøÂç¹ÜÀíÔ±¿ÉÔÚÎÞÏß¾ÖÓòÍø·ÃÎʵãAPÖÐÊÖ¹¤Î¬»¤Ò»×éÔÊÐí·ÃÎÊ»ò²»ÔÊÐí·ÃÎʵÄMACµØÖ·ÁÐ±í£¬ÒÔʵÏÖÎïÀíµØÖ·µÄ·ÃÎʹýÂË¡£
Èç¹ûÆóÒµµ±ÖеÄAPÊýÁ¿Ì«¶à£¬ÎªÁËʵÏÖÕû¸öÆóÒµµ±ÖÐËùÓÐAPͳһµÄÎÞÏßÍø¿¨MACµØÖ·ÈÏÖ¤£¬ÏÖÔÚµÄAPÒ²Ö§³ÖÎÞÏßÍø¿¨MACµØÖ·µÄ¼¯ÖÐRadiusÈÏÖ¤¡£
·þÎñÇø±êʶ·û(SSID)Æ¥Å䣺
ÎÞÏß¹¤×÷Õ¾±ØÐë³öʾÕýÈ·µÄSSID£¬ÓëÎÞÏß·ÃÎʵãAPµÄSSIDÏàͬ£¬²ÅÄÜ·ÃÎÊAP£»Èç¹û³öʾµÄSSIDÓëAPµÄSSID²»Í¬£¬ÄÇôAP½«¾Ü¾øËûͨ¹ý±¾·þÎñÇøÉÏÍø¡£Òò´Ë¿ÉÒÔÈÏΪSSIDÊÇÒ»¸ö¼òµ¥µÄ¿ÚÁ´Ó¶øÌṩ¿ÚÁîÈÏÖ¤»úÖÆ£¬ÊµÏÖÒ»¶¨µÄ°²È«¡£
ÔÚÎÞÏß¾ÖÓòÍø½ÓÈëµãAPÉ϶ԴËÏî¼¼ÊõµÄÖ§³Ö¾ÍÊǿɲ»ÈÃAP¹ã²¥ÆäSSIDºÅ£¬ÕâÑùÎÞÏß¹¤×÷Õ¾¶Ë¾Í±ØÐëÖ÷¶¯ÌṩÕýÈ·µÄSSIDºÅ²ÅÄÜÓëAP½øÐйØÁª¡£
ÓÐÏßµÈЧ±£ÃÜ£¨WEP£©£º
ÓÐÏßµÈЧ±£ÃÜ£¨WEP£©ÐÒéÊÇÓÉ802.11±ê×¼¶¨ÒåµÄ£¬ÓÃÓÚÔÚÎÞÏß¾ÖÓòÍøÖб£»¤Á´Â·²ãÊý¾Ý¡£WEPʹÓÃ40λԿ³×£¬²ÉÓÃRSA¿ª·¢µÄRC4¶Ô³Æ¼ÓÃÜËã·¨£¬ÔÚÁ´Â·²ã¼ÓÃÜÊý¾Ý¡£
WEP¼ÓÃܲÉÓþ²Ì¬µÄ±£ÃÜÃÜÔ¿£¬¸÷WLANÖÕ¶ËʹÓÃÏàͬµÄÃÜÔ¿·ÃÎÊÎÞÏßÍøÂç¡£WEPÒ²ÌṩÈÏÖ¤¹¦ÄÜ£¬µ±¼ÓÃÜ»úÖÆ¹¦ÄÜÆôÓ㬿ͻ§¶ËÒª³¢ÊÔÁ¬½ÓÉÏAPʱ£¬AP»á·¢³öÒ»¸öChallenge Packet¸ø¿Í»§¶Ë£¬¿Í»§¶ËÔÙÀûÓù²ÏíÃÜÔ¿½«´ËÖµ¼ÓÃܺóËͻشæÈ¡µãÒÔ½øÐÐÈÏÖ¤±È¶Ô£¬Ö»ÓÐÕýÈ·ÎÞÎ󣬲ÅÄÜ»ñ×¼´æÈ¡ÍøÂçµÄ×ÊÔ´¡£40λWEP¾ßÓкܺõĻ¥²Ù×÷ÐÔ£¬ËùÓÐͨ¹ýWi-Fi ×éÖ¯ÈÏÖ¤µÄ²úÆ·¶¼¿ÉÒÔʵÏÖWEP»¥²Ù×÷¡£ÏÖÔÚµÄWEPÒ»°ãÒ²Ö§³Ö128λµÄÔ¿³×£¬Ìṩ¸ü¸ßµÈ¼¶µÄ°²È«¼ÓÃÜ¡£
¶þ¡¢ 802.11i£¨WPA£©Ö®Ç°µÄ°²È«½â¾ö·½°¸
¶Ë¿Ú·ÃÎÊ¿ØÖƼ¼Êõ£¨IEEE802.1x£©ºÍ¿ÉÀ©Õ¹ÈÏÖ¤ÐÒ飨EAP£©£º
¸Ã¼¼ÊõÒ²ÊÇÓÃÓÚÎÞÏß¾ÖÓòÍøµÄÒ»ÖÖÔöÇ¿ÐÔÍøÂ簲ȫ½â¾ö·½°¸¡£µ±ÎÞÏß¹¤×÷Õ¾ÓëÎÞÏß·ÃÎʵãAP¹ØÁªºó£¬ÊÇ·ñ¿ÉÒÔʹÓÃAPµÄ·þÎñҪȡ¾öÓÚ802.1xµÄÈÏÖ¤½á¹û¡£Èç¹ûÈÏ֤ͨ¹ý£¬ÔòAPΪÎÞÏß¹¤×÷Õ¾´ò¿ªÕâ¸öÂß¼¶Ë¿Ú£¬·ñÔò²»ÔÊÐíÓû§ÉÏÍø¡£
802.1xÒªÇóÎÞÏß¹¤×÷Õ¾°²×°802.1x¿Í»§¶ËÈí¼þ£¬ÎÞÏß·ÃÎʵãÒªÄÚǶ802.1xÈÏÖ¤´úÀí£¬Í¬Ê±Ëü»¹×÷ΪRadius¿Í»§¶Ë£¬½«Óû§µÄÈÏÖ¤ÐÅϢת·¢¸øRadius·þÎñÆ÷¡£ÏÖÖ÷Á÷µÄPC»ú²Ù×÷ϵͳWin XP ÒÔ¼°Win2000¶¼ÒѾÓÐ802.1xµÄ¿Í»§¶Ë¹¦ÄÜ¡£
ÏÖÔÚ£¬°²È«¹¦ÄܱȽÏÈ«µÄAPÔÚÖ§³ÖIEEE 802.1x ºÍRadiusµÄ¼¯ÖÐÈÏ֤ʱ֧³ÖµÄ¿ÉÀ©Õ¹ÈÏÖ¤ÐÒéÀàÐÍÓУºEAP -MD5 & TLS¡¢TTLSºÍPEAP¡£
ÎÞÏ߿ͻ§¶Ë¶þ²ã¸ôÀë¼¼Êõ£º
ÔÚµçÐÅÔËÓªÉ̵Ĺ«ÖÚÈȵ㳡ºÏ£¬ÎªÈ·±£²»Í¬ÎÞÏß¹¤×÷Õ¾Ö®¼äµÄÊý¾ÝÁ÷¸ôÀ룬ÎÞÏß½ÓÈëµãAPÒ²¿ÉÖ§³ÖÆäËù¹ØÁªµÄÎÞÏ߿ͻ§¶Ë¹¤×÷Õ¾¶þ²ãÊý¾Ý¸ôÀ룬ȷ±£Óû§µÄ°²È«¡£
VPN-Over-Wireless¼¼Êõ£º
ĿǰÒѹ㷺ӦÓÃÓÚ¹ãÓòÍøÂç¼°Ô¶³Ì½ÓÈëµÈÁìÓòµÄVPN£¨Virtual Private Networking£©°²È«¼¼ÊõÒ²¿ÉÓÃÓÚÎÞÏß¾ÖÓòÍø¡£ÓëIEEE802.11b±ê×¼Ëù²ÉÓõݲȫ¼¼Êõ²»Í¬£¬VPNÖ÷Òª²ÉÓÃDES¡¢3DESµÈ¼¼ÊõÀ´±£ÕÏÊý¾Ý´«ÊäµÄ°²È«¡£¶ÔÓÚ°²È«ÐÔÒªÇó¸ü¸ßµÄÓû§£¬½«ÏÖÓеÄVPN°²È«¼¼ÊõÓëIEEE802.11b°²È«¼¼Êõ½áºÏÆðÀ´£¬ÊÇĿǰ½ÏΪÀíÏëµÄÎÞÏß¾ÖÓòÍøÂçµÄ°²È«½â¾ö·½°¸Ö®Ò»¡£
Èý¡¢ 2003Äê¿ìËÙ·¢Õ¹µÄWPA (Wi-Fi ±£»¤·ÃÎÊ) ¼¼Êõ
ÔÚIEEE 802.11i ±ê×¼×îÖÕÈ·¶¨Ç°£¬WPA£¨Wi-Fi Protected Access£©¼¼Êõ½«³ÉΪ´úÌæWEPµÄÎÞÏß°²È«±ê×¼ÐÒ飬ΪIEEE 802.11 ÎÞÏß¾ÖÓòÍøÌṩ¸üÇ¿´óµÄ°²È«ÐÔÄÜ¡£WPAÊÇIEEE802.11iµÄÒ»¸ö×Ó¼¯£¬ÆäºËÐľÍÊÇIEEE 802.1xºÍTKIP¡£
ÐÂÒ»´úµÄ¼ÓÃܼ¼ÊõTKIPÓëWEPÒ»Ñù»ùÓÚRC4¼ÓÃÜËã·¨£¬ÇÒ¶ÔÏÖÓеÄWEP½øÐÐÁ˸Ľø¡£ÔÚÏÖÓеÄWEP¼ÓÃÜÒýÇæÖÐÔö¼ÓÁË¡°ÃÜԿϸ·Ö£¨Ã¿·¢Ò»¸ö°üÖØÐÂÉú³ÉÒ»¸öеÄÃÜÔ¿£©¡±¡¢¡°ÏûÏ¢ÍêÕûÐÔ¼ì²é£¨MIC£©¡±¡¢¡°¾ßÓÐÐòÁй¦ÄܵijõʼÏòÁ¿¡±ºÍ¡°ÃÜÔ¿Éú³ÉºÍ¶¨ÆÚ¸üй¦ÄÜ¡±µÈ4ÖÖËã·¨£¬¼«´óµØÌá¸ßÁ˼ÓÃܰ²È«Ç¿¶È¡£TKIPÓ뵱ǰWi-Fi ²úÆ·Ïòºó¼æÈÝ£¬¶øÇÒ¿ÉÒÔͨ¹ýÈí¼þ½øÐÐÉý¼¶¡£´Ó2003ÄêµÄϰëÄ꿪ʼ£¬Wi-Fi×éÖ¯ÒѾ¿ªÊ¼¶ÔÖ§³ÖWPAµÄÎÞÏß¾ÖÓòÍøÉ豸½øÐÐÈÏÖ¤¡£
ËÄ¡¢ ¸ß¼¶µÄÎÞÏß¾ÖÓòÍø°²È«±ê×¼¡ªIEEE 802.11i
ΪÁ˽øÒ»²½¼ÓÇ¿ÎÞÏßÍøÂçµÄ°²È«ÐԺͱ£Ö¤²»Í¬³§¼ÒÖ®¼äÎÞÏß°²È«¼¼ÊõµÄ¼æÈÝ£¬ IEEE802.11¹¤×÷×éĿǰÕýÔÚ¿ª·¢×÷ΪÐµİ²È«±ê×¼µÄIEEE 802.11i£¬²¢ÇÒÖÂÁ¦ÓÚ´Ó³¤Ô¶½Ç¶È¿¼Âǽâ¾öIEEE 802.11ÎÞÏß¾ÖÓòÍøµÄ°²È«ÎÊÌâ¡£IEEE 802.11i±ê×¼²Ý°¸ÖÐÖ÷Òª°üº¬¼ÓÃܼ¼Êõ£ºTKIP (Temporal Key Integrity Protocol) ºÍ AES£¨Advanced Encryption Standard£©£¬ÒÔ¼°ÈÏÖ¤ÐÒéIEEE 802.1x¡£Ô¤¼ÆÍêÕûµÄIEEE 802.11iµÄ±ê×¼½«ÔÚ2004ÄêµÄÉϰëÄêµÃµ½ÕýʽÅú×¼£¬IEEE 802.11i½«ÎªÎÞÏß¾ÖÓòÍøµÄ°²È«Ìṩ¿ÉÐŵıê×¼Ö§³Ö¡£
Îå¡¢ÎÞÏß¾ÖÓòÍø°²È«¼¼ÊõµÄ·¢Õ¹·½Ïò
ÎÞÏß¾ÖÓòÍø×ܵķ¢Õ¹·½ÏòÊÇËÙ¶È»áÔ½À´Ô½¿ì(ĿǰÒѼûµÄÊÇ11MbpsµÄIEEE 802.11b£¬54MbpsµÄIEEE 802.11g ÓëIEEE 802.11a±ê×¼)£¬°²È«ÐÔ»áÔ½À´Ô½¸ß¡£µ±È»ÎÞÏß¾ÖÓòÍøµÄ¸÷Ïî¼¼Êõ¾ù´¦ÔÚ¿ìËٵķ¢Õ¹¹ý³Ìµ±ÖУ¬µ«54MbpsµÄÎÞÏß¾ÖÓòÍø¹æ·¶IEEE 802.11g¼°IEEE 802.1X½«ÊǽüÆÚÕû¸öÎÞÏß¾ÖÓòÍøÒµµÄÈȵ㡣
×÷ΪһÃûÍø¹ÜÔ±À´Ëµ£¬¶ÔÎÞÏß¾ÖÓòÍøµÄ°²È«·À»¤Ó¦¿¼ÂÇÒÔÏ·À·¶µãºÍ´ëÊ©£º
°²È«·À·¶µã£º 1. δ¾ÊÚȨÓû§µÄ½ÓÈë 2. ÍøÉÏÁھӵĹ¥»÷ 3. ·Ç·¨Óû§½ØÈ¡ÎÞÏßÁ´Â·ÖеÄÊý¾Ý 4. ·Ç·¨APµÄ½ÓÈë 5. ÄÚ²¿Î´¾ÊÚȨµÄ¿ç²¿ÃÅʹÓÃ
ÏàÓ¦´ëÊ©£º 1. ʹÓø÷ÖÖÏȽøµÄÉí·ÝÈÏÖ¤´ëÊ©£¬·Àֹδ¾ÊÚȨÓû§µÄ½ÓÈë ÓÉÓÚÎÞÏßÐźÅÊÇÔÚ¿ÕÆøÖд«²¥µÄ£¬ÐźſÉÄܻᴫ²¥µ½²»Ï£Íûµ½´ïµÄµØ·½£¬ÔÚÐźŸ²¸Ç·¶Î§ÄÚ£¬·Ç·¨Óû§ÎÞÐèÈκÎÎïÀíÁ¬½Ó¾Í¿ÉÒÔ»ñÈ¡ÎÞÏßÍøÂçµÄÊý¾Ý£¬Òò´Ë£¬±ØÐë´Ó¶à·½Ãæ·ÀÖ¹·Ç·¨Öն˽ÓÈëÒÔ¼°Êý¾ÝµÄй©ÎÊÌâ¡£
2. ÀûÓÃMAC×èֹδ¾ÊÚȨµÄ½ÓÈë ÿ¿éÎÞÏßÍø¿¨¶¼ÓµÓÐΨһµÄÒ»¸öMAC µØÖ·£¬Îª AP ÉèÖûùÓÚ MAC µØÖ·µÄ Access Control£¨·ÃÎÊ¿ØÖÆ±í£©£¬È·±£Ö»Óо¹ý×¢²áµÄÉ豸²ÅÄܽøÈëÍøÂç¡£ ʹÓÃ802.1x¶Ë¿ÚÈÏÖ¤¼¼Êõ½øÐÐÉí·ÝÈÏÖ¤ ʹÓÃ802.1x¶Ë¿ÚÈÏÖ¤¼¼ÊõÅäºÏºǫ́µÄRADIUSÈÏÖ¤·þÎñÆ÷£¬¶ÔËùÓнÓÈëÓû§µÄÉí·Ý½øÐÐÑϸñÈÏÖ¤£¬¶Å¾øÎ´¾ÊÚȨµÄÓû§½ÓÈëÍøÂ磬µÁÓÃÊý¾Ý»ò½øÐÐÆÆ»µ¡£
3. ʹÓÃÏȽøµÄ¼ÓÃܼ¼Êõ£¬Ê¹µÃ·Ç·¨Óû§¼´Ê¹½ØÈ¡ÎÞÏßÁ´Â·ÖеÄÊý¾ÝÒ²ÎÞ·¨ÆÆÒë»ù±¾µÄWEP¼ÓÃÜ WEPÊÇIEEE802.11bÎÞÏß¾ÖÓòÍøµÄ±ê×¼ÍøÂ簲ȫÐÒé¡£ÔÚ´«ÊäÐÅϢʱ£¬WEP¿ÉÒÔͨ¹ý¼ÓÃÜÎÞÏß´«ÊäÊý¾ÝÀ´ÌṩÀàËÆÓÐÏß´«ÊäµÄ±£»¤¡£ÔÚ¼ò±ãµÄ°²×°ºÍÆô¶¯Ö®ºó£¬Ó¦Á¢¼´ÉèÖÃWEPÃÜÔ¿¡£
4. ÀûÓöÔAPµÄºÏ·¨ÐÔÑéÖ¤ÒÔ¼°¶¨ÆÚ½øÐÐÕ¾µãÉó²é£¬·ÀÖ¹·Ç·¨APµÄ½ÓÈë ÔÚÎÞÏßAP½ÓÈëÓÐÏß¼¯Ï߯÷µÄʱºò£¬¿ÉÄÜ»áÓöµ½·Ç·¨APµÄ¹¥»÷£¬·Ç·¨°²×°µÄAP»áΣº¦ÎÞÏßÍøÂçµÄ±¦¹ó×ÊÔ´£¬Òò´Ë±ØÐë¶ÔAPµÄºÏ·¨ÐÔ½øÐÐÑéÖ¤¡£APÖ§³ÖµÄIEEE802.1x¼¼ÊõÌṩÁËÒ»¸ö¿Í»§»úºÍÍøÂçÏ໥ÑéÖ¤µÄ·½·¨£¬ÔÚ´ËÑéÖ¤¹ý³ÌÖв»µ«APÐèҪȷÈÏÎÞÏßÓû§µÄºÏ·¨ÐÔ£¬ÎÞÏßÖÕ¶ËÉ豸Ҳ±ØÐëÑéÖ¤APÊÇ·ñΪÐé¼ÙµÄ·ÃÎʵ㣬Ȼºó²ÅÄܽøÐÐͨÐÅ¡£Í¨¹ýË«ÏòÈÏÖ¤£¬¿ÉÒÔÓÐЧµÄ·ÀÖ¹·Ç·¨APµÄ½ÓÈë¡£¶ÔÓÚÄÇЩ²»Ö§³ÖIEEE802.1xµÄAP£¬ÔòÐèҪͨ¹ý¶¨ÆÚµÄÕ¾µãÉó²éÀ´·ÀÖ¹·Ç·¨APµÄ½ÓÈë¡£ÔÚÈëÇÖÕßʹÓÃÍøÂç֮ǰ£¬Í¨¹ý½ÓÊÕÌìÏßÕÒµ½Î´±»ÊÚȨµÄÍøÂ磬ͨ¹ýÎïÀíÕ¾µãµÄ¼à²âÓ¦µ±¾¡¿ÉÄÜµØÆµ·±½øÐУ¬Æµ·±µÄ¼à²â¿ÉÔö¼Ó·¢ÏÖ·Ç·¨ÅäÖÃÕ¾µãµÄ´æÔÚ¼¸ÂÊ£¬Ñ¡ÔñСÐ͵ÄÊÖ³Öʽ¼ì²âÉ豸£¬¹ÜÀíÔ±¿ÉÒÔͨ¹ýÊÖ³ÖɨÃèÉè±¸ËæÊ±µ½ÍøÂçµÄÈκÎλÖýøÐмì²â¡£
5. ÀûÓÃESSID¡¢MACÏÞÖÆ·Àֹδ¾ÊÚȨµÄ¿ç²¿ÃÅʹÓÃ
ÀûÓÃESSID½øÐв¿ÃÅ·Ö×飬¿ÉÒÔÓÐЧµØ±ÜÃâÈÎÒâÂþÓδøÀ´µÄ°²È«ÎÊÌ⣻MACµØÖ·ÏÞÖÆ¸üÄÜ¿ØÖÆÁ¬½Óµ½¸÷²¿ÃÅAPµÄÖÕ¶Ë£¬±ÜÃâδ¾ÊÚȨµÄÓû§Ê¹ÓÃÍøÂç×ÊÔ´¡£
±£ÕÏÕû¸öÍøÂ簲ȫÊǷdz£ÖØÒªµÄ£¬ÎÞÂÛÊÇ·ñÓÐÎÞÏßÍø¶Î£¬´ó¶àÊýµÄ¾ÖÓòÍø¶¼±ØÐëÒªÓÐÒ»¶¨¼¶±ðµÄ°²È«´ëÊ©¡£¶øÎÞÏßÍøÂçÏà¶ÔÀ´Ëµ±È½Ï°²È«£¬ÎÞÏßÍø¶Î¼´»ò²»ÄÜÌṩ±ÈÓÐÏßÍø¶Î¸ü¶àµÄ±£»¤£¬Ò²ÖÁÉÙºÍËüÏàͬ¡£ÐèҪעÒâµÄÊÇ£¬ÎÞÏß¾ÖÓòÍø²¢²»ÊÇÒªÌæ´úÓÐÏß¾ÖÓòÍø£¬¶øÊÇÓÐÏß¾ÖÓòÍøµÄÌæ²¹¡£Ê¹ÓÃÎÞÏß¾ÖÓòÍøµÄ×îÖÕÄ¿±ê²»ÊÇÏû³ýÓÐÏßÉ豸£¬¶øÊǾ¡Á¿¼õÉÙÏßÀºͶÏÏßʱ¼ä£¬ÈÃÓÐÏßÓëÎÞÏßÍøÂçºÜºÃµØÅäºÏ¹¤×÷¡£
²Î¿¼£º
Ò»¡¢·¢Õ¹ÖеÄIEEE 802.1xÎÞÏß¾ÖÓòÍø°²È«±ê×¼
Ò»¿ªÊ¼£¬IEEE 802.11ÌṩÁËһЩ»ù±¾µÄ°²È«»úÖÆ£¬ÕâʹµÃÎÞÏßÍøÈÕÒæÔöÇ¿µÄ×ÔÓɽÏÉÙDZÔÚÍþв¡£ÔÚ802.11¹æ·¶ÖÐͨ¹ýÓÐÏßͬµÈ±£ÃÜ£¨Wired Equivalent Privacy WEP£©Ëã·¨ÌṩÁ˸½¼ÓµÄ°²È«ÐÔ¡£ÕâÒ»°²È«»úÖÆµÄÒ»¸öÖ÷ÒªÏÞÖÆÊÇ£ºÃ»Óй涨һ¸ö·ÖÅäÃÜÔ¿µÄ¹ÜÀíÐÒé¡£Òò´Ë£¬´àÈõµÄ°²È«»úÖÆÊ¹Ëü²»×ãÒÔ×èµ²ÈκÎÈË£¬¸üºÎ¿öÊǺڿ͵Ĺ¥»÷¡£ ΪÁ˲¹¾ÈWEPÔÚ°²È«ÐÔÉϵIJ»×㣬ÐèҪͨ¹ýIEEE 802.1xÐÒé¡£802.1xÊÇÒ»¸ö»ùÓڶ˿ڵıê×¼²Ý°¸¡£ÍøÂç½ÓÈë¿ØÖÆÌṩÒÔÌ«ÍøµÄÍøÂç½ÓÈëµÄ¼øÈ¨¡£ÕâÖÖ»ùÓڶ˿ڵÄÍøÂç½ÓÈë¿ØÖÆÊ¹Óý»»»Ê½¾ÖÓòÍø»ù´¡ÉèÊ©µÄÎïÀíÌØÐÔÀ´ÈÏÖ¤Á¬½Óµ½¾ÖÓòÍøÄ³¸ö¶Ë¿ÚµÄÉ豸¡£Èç¹ûÈÏÖ¤¹ý³Ìʧ°Ü£¬¶Ë¿Ú½ÓÈ뽫±»×èÖ¹¡£¾¡¹Ü´Ë±ê×¼ÊÇΪÓÐÏßÒÔÌ«ÍøÉè¼Æ£¬ËüÒ²¿ÉÓÃÓÚ802.11ÎÞÏß¾ÖÓòÍø¡£
¶ÔÎÞÏßÍøÂçÀ´Ëµ£¬802.1xÖ§³ÖÔ¶³Ì²¦ºÅÓû§Ç©Ãû·þÎñ£¨Remote Authentication Dial-In Service RADIUS£©£¬½ÓÈëµã½«²ÉÓöԿͻ§Ö¤ÊéÈÏÖ¤µÄRADIUS·þÎñÆ÷×÷ÎªÍøÂç½ÓÈëµÄÈÏÖ¤Õß¡£802.1x»¹Ö§³Ö¼¯ÖÐʽµÄKerberosÓû§Ç©Ãû¡¢ÑéÖ¤ºÍ¼ÇÕË£¬²¢ÇÒʵÏÖÁ˸üÇ¿µÄÐÒ顣ͨÐű»ÔÊÐíͨ¹ýÒ»¸öÂß¼"·Ç¿ØÖƶ˿Ú"»òÐŵÀÀ´ÑéÖ¤Ö¤ÊéµÄÓÐЧÐÔ¶øÍ¨¹ýÒ»¸öÂß¼"¿ØÖƶ˿Ú"À´»ñµÃ½ÓÈëÍøÂçµÄÃÜÔ¿¡£Ð±ê׼Ϊÿ¸öÓû§ºÍÿ¸ö»á»°×¼±¸²»Í¬µÄÃܳף¬²¢ÇÒÃܳ×Ö§³Ö128 bitµÄ³¤¶È¡£ÃÜÔ¿¹ÜÀíÐÒéÒò¶øµÃÒÔÌí¼Óµ½802.11µÄ°²È«ÐÔÖС£ ÕâÖÖ802.1x·½Ê½Òѱ»¹ã·º²ÉÓöøRADIUS¼øÈ¨µÄʹÓÃÒ²ÔÚÔö¼Ó¡£Èç¹ûÐèÒªµÄ»°£¬RADIUS·þÎñÆ÷¿ÉÒÔ²éѯһ¸ö±¾µØÈÏÖ¤Êý¾Ý¿â¡£»òÕߣ¬ÇëÇóÒ²¿ÉÒÔ±»´«Ë͸øÆäËû·þÎñÆ÷½øÐÐÓÐЧÐÔÑéÖ¤¡£µ±RADIUS¾ö¶¨»úÆ÷¿ÉÒÔ½øÈëÍøÂçʱ£¬½«Ïò½ÓÈëµã·¢ËÍÏûÏ¢£¬½ÓÈëµãÔòÔÊÐíÊý¾ÝÒµÎñÁ÷ÈëÍøÂç¡£
¶þ¡¢Windows XPÖÐÕë¶ÔÒÔÌ«Íø»òÎÞÏß¾ÖÓòÍøÉÏ·þÎñÆ÷µÄ°²È«ÐԸĽø
Secure Wireless/Ethernet LAN£¨°²È«ÎÞÏß/ÒÔÌ«¾ÖÓòÍø£©ÎªÄúÔöÇ¿ÁË¿ª·¢°²È«ÓÐÏßÓëÎÞÏß¾ÖÓòÍø£¨LAN£©ÍøµÄÄÜÁ¦¡£ÕâÖÖÌØÐÔÊÇͨ¹ýÔÊÐíÔÚÒÔÌ«Íø»òÎÞÏß¾ÖÓòÍøÉϲ¿Êð·þÎñÆ÷ʵÏֵġ£½èÖúSecure Wireless/Ethernet LAN£¬ÔÚÓû§½øÐеǼǰ£¬¼ÆËã»ú½«ÎÞ·¨·ÃÎÊÍøÂ硣Ȼ¶ø£¬Èç¹ûһ̨É豸¾ß±¸¡°»úÆ÷Éí·ÝÑéÖ¤¡±¹¦ÄÜ£¬ÄÇôËü½«Äܹ»ÔÚͨ¹ýÑéÖ¤²¢½ÓÊÜIAS/RADIUS·þÎñÆ÷ÊÚȨºó»ñµÃ¾ÖÓòÍøµÄ·ÃÎÊȨÏÞ¡£ Windows XPÖеÄSecure Wireless/Ethernet LANÔÚ»ùÓÚIEEE 802.11¹æ·¶µÄÓÐÏßÓëÎÞÏß¾ÖÓòÍøÉÏʵÏÖÁ˰²È«ÐÔ¡£ÕâÒ»¹ý³ÌÊÇͨ¹ý¶Ô×Ô¶¯×¢²á»òÖÇÄÜ¿¨Ëù²¿ÊðµÄ¹«¹²Ö¤ÊéµÄʹÓüÓÒÔÖ§³ÖµÄ¡£ËüÔÊÐíÔÚ¹«¹²³¡Ëù£¨È繺ÎïÖÐÐÄ»ò»ú³¡£©¶ÔÓÐÏßÒÔÌ«ÍøºÍÎÞÏßIEEE 802.11ÍøÂçʵʩ·ÃÎÊ¿ØÖÆ¡£ÕâÖÖIEEE 802.1X Network Access Control£¨IEEE 802.1XÍøÂç·ÃÎÊ¿ØÖÆ£©°²È«ÌØÐÔ»¹Ö§³ÖExtensible Authentication Protocol£¨À©Õ¹Éí·ÝÑéÖ¤ÐÒ飬EAP£©ÔËÐл·¾³ÖеļÆËã»úÉí·ÝÑéÖ¤¹¦ÄÜ¡£IEEE 802.1XÔÊÐí¹ÜÀíԱΪ»ñµÃÓÐÏß¾ÖÓòÍøºÍÎÞÏßIEEE 802.11¾ÖÓòÍø·ÃÎÊÐí¿ÉµÄ·þÎñÆ÷·ÖÅäȨÏÞ¡£ÒòΪ£¬Èç¹ûһ̨·þÎñÆ÷±»·ÅÖÃÔÚÍøÂçÖУ¬¹ÜÀíÔ±¿Ï¶¨Ï£ÍûÈ·±£ÆäÖ»ÄÜ·ÃÎÊÄÇЩÒÑÔÚÆäÖÐͨ¹ýÉí·ÝÑéÖ¤µÄÍøÂç¡£ÀýÈ磬¶Ô»áÒéÊҵķÃÎÊȨÏÞ½«Ö»±»Ìṩ¸øÌض¨·þÎñÆ÷£¬¶øÀ´×ÔÆäËü·þÎñÆ÷µÄ·ÃÎÊÇëÇ󽫱»Ôâµ½¾Ü¾ø¡£
| ×ÔÓÉ¹ã¸æÇø |
| ¡¡ |