RE: Too much Security Overkill on wireless network??? [7:61685]

2003-01-23 Thread Michael Williams
Preface this by saying I am NOT a security expert. This is more for my own information/learning. Just curious, but what is stopping you from using LEAP? Again, not being a security expert, I'm not familiar with PEAP. I would think that if your WLAN is in the DMZ, and has to create a VPN connect

Re: Too much Security Overkill on wireless network??? [7:61685]

2003-01-23 Thread Sam Sneed
Are these users the same regular users that are allowed to log in wired workstations today? Or is it for outsourced consultants? If its for everday users then its overkill. What I'd do for that situation is created a new VLAN behind firewall for these users uses PEAP to authenitcate between the wir

Re: Too much Security Overkill on wireless network [7:61685]

2003-01-23 Thread Priscilla Oppenheimer
Sam Sneed wrote: > > Are these users the same regular users that are allowed to log > in wired > workstations today? Or is it for outsourced consultants? > If its for everday users then its overkill. What I'd do for > that situation > is created a new VLAN behind firewall for these users uses PEAP

RE: Too much Security Overkill on wireless network??? [7:61685]

2003-01-23 Thread Hanna, Keith
We're not allowed to implement wireless, yet, but my rollout plan would be points 1 & 2. I don't think _I_ need to go the step further as you have, but as a minimum I definitely agree with 1 & 2. Keith -Original Message- From: eric nguyen [mailto:[EMAIL PROTECTED]] Sent: 23 January 2003 1

RE: Too much Security Overkill on wireless network??? [7:61685]

2003-01-23 Thread Gibson, Darrin
This is what I did with our wireless (Cisco) stuff. Setup a VLAN and put in a 3005 VPN concentrator, the public interface is in the same VLAN as the wireless the private is connected to the internal network. I put an access list on the VLAN then locked down (as best you can) the APs. We use LEAP, M

Re: Too much Security Overkill on wireless network??? [7:61685]

2003-01-23 Thread Andrew Dorsett
On Thu, 23 Jan 2003, eric nguyen wrote: > Hi, > > I have assigned the task of setting up a wireless network for my company > > and I am wondering that I use too much "security" for the wireless. Here are some thoughts. Maybe the CCIE isn't so much of a moron. Because I will state that you do ha