# How secure is my wireless network? Can I increase the security?

**URL:** https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008
**Category:** Factual Questions
**Created:** [January 1, 2011, 12:57am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008 "2011-01-01T00:57:31Z")
**Posts on this page:** 12
**Page:** 1

<div class="post-metadata">

### Author: ![Pierrot\_Le\_Fou](https://avatars.discourse-cdn.com/v4/letter/p/f475e1/32.png) [@Pierrot\_Le\_Fou](https://boards.straightdope.com/u/Pierrot_Le_Fou)
#### Post date: [January 1, 2011, 12:57am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/1 "2011-01-01T00:57:31Z")

</div>

I use the WPA2 - Personal security mode with a pass phrase that uses random capitalization and numbers. I also have mac filtering enabled.

Is the network fairly secure? Are there other things I can do to make it more secure?

---

<div class="post-metadata">

### Author: ![Zenja](https://avatars.discourse-cdn.com/v4/letter/z/47e85d/32.png) [@Zenja](https://boards.straightdope.com/u/Zenja)
#### Post date: [January 1, 2011, 1:29am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/2 "2011-01-01T01:29:44Z")

</div>

Yes, it’s more than secure enough IMO. The biggest weakness in it is probably people getting a hold of your key, such as friends you’ve given it to that decide to screw around or something like that.

---

<div class="post-metadata">

### Author: ![Pierrot\_Le\_Fou](https://avatars.discourse-cdn.com/v4/letter/p/f475e1/32.png) [@Pierrot\_Le\_Fou](https://boards.straightdope.com/u/Pierrot_Le_Fou)
#### Post date: [January 1, 2011, 1:35am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/3 "2011-01-01T01:35:47Z")

</div>

> [@Zenja](#):
>
> Yes, it’s more than secure enough IMO. The biggest weakness in it is probably people getting a hold of your key, such as friends you’ve given it to that decide to screw around or something like that.

With the key, could they get around the MAC filtering after I remove them from the client list?

---

<div class="post-metadata">

### Author: ![tellyworth](https://avatars.discourse-cdn.com/v4/letter/t/977dab/32.png) [@tellyworth](https://boards.straightdope.com/u/tellyworth)
#### Post date: [January 1, 2011, 1:48am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/4 "2011-01-01T01:48:29Z")

</div>

> [@Pierrot\_Le\_Fou](#):
>
> With the key, could they get around the MAC filtering after I remove them from the client list?

If they have some knowledge and determination, yes. MAC filtering doesn’t really improve your security. Most of the tools for Wifi sniffing and hacking can break it easily.

---

<div class="post-metadata">

### Author: ![Duckster](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/duckster/32/1244_2.png) [@Duckster](https://boards.straightdope.com/u/Duckster)
#### Post date: [January 1, 2011, 2:58am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/5 "2011-01-01T02:58:52Z")

</div>

Hide in plain sight.

If there are other wireless networks in your immediate area, and they are less secure (e.g., no security or WEP), you will have an additional security advantage.

---

<div class="post-metadata">

### Author: ![Pierrot\_Le\_Fou](https://avatars.discourse-cdn.com/v4/letter/p/f475e1/32.png) [@Pierrot\_Le\_Fou](https://boards.straightdope.com/u/Pierrot_Le_Fou)
#### Post date: [January 1, 2011, 3:04am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/6 "2011-01-01T03:04:41Z")

</div>

> [@Duckster](#):
>
> Hide in plain sight.
> 
> If there are other wireless networks in your immediate area, and they are less secure (e.g., no security or WEP), you will have an additional security advantage.

There are two WEP. What is WEP, and why is its security weaker?

---

<div class="post-metadata">

### Author: ![jz78817](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/jz78817/32/1028_2.png) [@jz78817](https://boards.straightdope.com/u/jz78817)
#### Post date: [January 1, 2011, 3:15am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/7 "2011-01-01T03:15:07Z")

</div>

> [@Pierrot\_Le\_Fou](#):
>
> There are two WEP. What is WEP, and why is its security weaker?

I guess I’ll point you to this, 'cos I can’t explain it any better:

[http://www.networkworld.com/research/2002/0909wepprimer.html](http://www.networkworld.com/research/2002/0909wepprimer.html)

as for your initial question, WPA2 is fairly secure, so if your passphrase is sufficiently long and has enough random characters (no dictionary words!) you’re probably fine. MAC filtering isn’t all that useful.

---

<div class="post-metadata">

### Author: ![Pierrot\_Le\_Fou](https://avatars.discourse-cdn.com/v4/letter/p/f475e1/32.png) [@Pierrot\_Le\_Fou](https://boards.straightdope.com/u/Pierrot_Le_Fou)
#### Post date: [January 1, 2011, 3:30am UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/8 "2011-01-01T03:30:46Z")

</div>

After looking at that link and a couple others, it looks like if someone really wants to break into wireless network, they probably can.

---

<div class="post-metadata">

### Author: ![Turble](https://avatars.discourse-cdn.com/v4/letter/t/8dc957/32.png) [@Turble](https://boards.straightdope.com/u/Turble)
#### Post date: [January 1, 2011, 6:00pm UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/9 "2011-01-01T18:00:43Z")

</div>

You might discourage casual cracking by naming your home network something like “FBI\_Surveillance\_Net”.  
😉

---

<div class="post-metadata">

### Author: ![Duckster](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/duckster/32/1244_2.png) [@Duckster](https://boards.straightdope.com/u/Duckster)
#### Post date: [January 1, 2011, 6:11pm UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/10 "2011-01-01T18:11:50Z")

</div>

> [@Turble](#):
>
> You might discourage casual cracking by naming your home network something like “FBI\_Surveillance\_Net”.  
> 😉

And, in turn, naming your wireless network to a smartass “FBI\_Surveillance\_Net” or similar is an open challenge to real hackers to break into your network.

Just sayin’.

😃

---

<div class="post-metadata">

### Author: ![Cleophus](https://avatars.discourse-cdn.com/v4/letter/c/a88e57/32.png) [@Cleophus](https://boards.straightdope.com/u/Cleophus)
#### Post date: [January 1, 2011, 6:35pm UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/11 "2011-01-01T18:35:39Z")

</div>

> [@Pierrot\_Le\_Fou](#):
>
> There are two WEP. What is WEP, and why is its security weaker?

Don’t confuse WPA and WEP. WEP is the old, fundamentally flawed encryption method. WPA can be implemented with one of two protocols, TKIP (usually called WPA1) and CCMP (usually called AES, aka WPA2). WPA-TKIP has a weakness that allows an attacker to transmit data into the network without knowing the network key. There are no publicly known flaws that would allow the attacker to recover the network key without brute force, though. CCMP uses AES for the encryption algorithm and provides stronger integrity checking to prevent forged frames from entering the network.

With both WEP and WPA-TKIP, the flaws are not within the actual encryption algorithm, RC4. WEP and WPA-TKIP use CRC32 to verify the integrity of packets, a method that cannot detect intentional tampering.

---

<div class="post-metadata">

### Author: ![jz78817](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/jz78817/32/1028_2.png) [@jz78817](https://boards.straightdope.com/u/jz78817)
#### Post date: [January 1, 2011, 6:43pm UTC](https://boards.straightdope.com/t/how-secure-is-my-wireless-network-can-i-increase-the-security/566008/12 "2011-01-01T18:43:11Z")

</div>

> [@](#):
>
> Don’t confuse WPA and WEP.

might be seeing separate entries for 40-bit and 128-bit WEP.
