[96301] in North American Network Operators' Group
Re: Open WiFi Access Point BCP's???
daemon@ATHENA.MIT.EDU (Jerry Dixon)
Fri Apr 27 19:38:21 2007
X-Report-Abuse-To: abuse@dyndns.com (see http://www.mailhop.org/outbound/abuse.html for abuse reporting information)
From: "Jerry Dixon" <jerry@jdixon.com>
To: "Brandon Galbraith" <brandon.galbraith@gmail.com>,
"MARLON BORBA" <MBORBA@trf3.gov.br>
Cc: "Deepak Jain" <deepak@ai.net>, <nanog@merit.edu>
In-Reply-To: <366100670704271621y46dae3abnd67ee5056a04b299@mail.gmail.com>
Date: Fri, 27 Apr 2007 19:33:59 -0400
Errors-To: owner-nanog@merit.edu
This is a multi-part message in MIME format.
------=_NextPart_000_001E_01C78903.00B0C340
Content-Type: text/plain;
charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
You can visit the US-CERT website at =
http://www.us-cert.gov/reading_room/ for overview and recommendations =
on wireless.
Jerry
----- Original Message -----=20
From: Brandon Galbraith=20
To: MARLON BORBA=20
Cc: Deepak Jain ; nanog@merit.edu=20
Sent: Friday, April 27, 2007 7:21 PM
Subject: Re: Open WiFi Access Point BCP's???
On 4/27/07, MARLON BORBA <MBORBA@trf3.gov.br> wrote:
If you want to follow just one rule, it's this:-
Instruct your users to never (I mean NEVER) use applications which =
run
over unencrypted protocols.
Security first.
Abra=C3=A7os,
Indeed. If you know ahead of time unencrypted 802.11(whatever) is =
going to be used, *always* use a VPN or tunnel of some sort to secure =
your traffic (if the apps you'll be using have no native encryption).
------=_NextPart_000_001E_01C78903.00B0C340
Content-Type: text/html;
charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
=EF=BB=BF<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Dutf-8">
<META content=3D"MSHTML 6.00.6000.16397" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3DArial size=3D2>You can visit the US-CERT website at <A =
href=3D"http://www.us-cert.gov/reading_room/">http://www.us-cert.gov/read=
ing_room/</A> =20
for overview and recommendations on wireless.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT> </DIV>
<DIV><FONT face=3DArial size=3D2>Jerry</FONT></DIV>
<BLOCKQUOTE=20
style=3D"PADDING-RIGHT: 0px; PADDING-LEFT: 5px; MARGIN-LEFT: 5px; =
BORDER-LEFT: #000000 2px solid; MARGIN-RIGHT: 0px">
<DIV style=3D"FONT: 10pt arial">----- Original Message ----- </DIV>
<DIV=20
style=3D"BACKGROUND: #e4e4e4; FONT: 10pt arial; font-color: =
black"><B>From:</B>=20
<A title=3Dbrandon.galbraith@gmail.com=20
href=3D"mailto:brandon.galbraith@gmail.com">Brandon Galbraith</A> =
</DIV>
<DIV style=3D"FONT: 10pt arial"><B>To:</B> <A =
title=3DMBORBA@trf3.gov.br=20
href=3D"mailto:MBORBA@trf3.gov.br">MARLON BORBA</A> </DIV>
<DIV style=3D"FONT: 10pt arial"><B>Cc:</B> <A title=3Ddeepak@ai.net=20
href=3D"mailto:deepak@ai.net">Deepak Jain</A> ; <A =
title=3Dnanog@merit.edu=20
href=3D"mailto:nanog@merit.edu">nanog@merit.edu</A> </DIV>
<DIV style=3D"FONT: 10pt arial"><B>Sent:</B> Friday, April 27, 2007 =
7:21=20
PM</DIV>
<DIV style=3D"FONT: 10pt arial"><B>Subject:</B> Re: Open WiFi Access =
Point=20
BCP's???</DIV>
<DIV><BR></DIV>On 4/27/07, <B class=3Dgmail_sendername>MARLON =
BORBA</B> <<A=20
href=3D"mailto:MBORBA@trf3.gov.br">MBORBA@trf3.gov.br</A>> wrote:
<DIV><SPAN class=3Dgmail_quote></SPAN>
<BLOCKQUOTE class=3Dgmail_quote=20
style=3D"PADDING-LEFT: 1ex; MARGIN: 0pt 0pt 0pt 0.8ex; BORDER-LEFT: =
rgb(204,204,204) 1px solid"><BR>If=20
you want to follow just one rule, it's this:-<BR><BR>Instruct your =
users to=20
never (I mean NEVER) use applications which run<BR>over unencrypted=20
protocols.<BR>Security=20
first.<BR><BR><BR>Abra=C3=A7os,<BR><BR></BLOCKQUOTE></DIV><BR>Indeed. =
If you know=20
ahead of time unencrypted 802.11(whatever) is going to be used, =
*always* use a=20
VPN or tunnel of some sort to secure your traffic (if the apps you'll =
be using=20
have no native encryption).<BR></BLOCKQUOTE></BODY></HTML>
------=_NextPart_000_001E_01C78903.00B0C340--