Chapter 4 Flashcards
WEP
Wired Equivalent Privacy
WPA/WPA2
Wi-Fi Protected Access
TKIP
Temporal Key Integrity Protocol
AES
Advanced Encryption Standard
EAP
Extensible Authentication Protocol
SSID
Service Set Indentifier
SSID max length
32 characters
What does a bootstrap wireless profile do?
It authenticates a computer to a wireless network, then the domain
PKI
Public Key Infrastructure
What should you do if your wireless connection drops frequently or has poor performance?
Check to see if AP/Wireless device are transmitting at full power Move devices closer together Use high gain Antennas
Where is the central place to deal with wireless connectivity issues?
Network and Sharing Center
What should you do about connectivity problems?
Check from interferance from devices using same freuqency Check that WAP is on and has sufficent signal strength Check if wireless profile settings are correct.
RAS
Remote Access Server - Allows users to connect to an organizations network remotely
VPN
Virtual Private network - Links two computers together through a WAN.
RRAS
Routing and Remote Access Server - Used on windows VPN servers to allow/deny RA users on the internet access.
PPTP
Point-to-Point Tunneling Protocol - Easy to setup, weak encryption, obsolete.
IPSec
Internet Protocol Security. Used on Win Server 2008/Windows 7. Secures IP communications by authenticating and encrypting packets.
L2TP
Layer 2 Tunneling Protocol. Used with IPSec. Industry standard secure tunneling protocol. Needs preshared key/certificate.
IKEv2
Internet Key Exchange version 2. New in Win7/Win server 2008. Uses IPSec/SSL, supports VPN reconnect to re-establish broken connections, and doesn’t need certificates/preshared keys.
SSTP
Introduced with Win Server 2008. Passes PPTP/L2TP/IPsec data through port 443 (HTTPS, SSL) to avoid getting blocked by firewalls/web proxies. No preshared key/certificate needed.
VPN Authentication protocols supported by Win7/Server ‘08
PAP CHAP MS-CHAP v2 EAP-MS-CHAPv2
PAP
Password Authentication Protocol. Plain text PWs
CHAP/MS-CHAP v2
Challenge-response authentication that uses md5 hashing to encrypt the response. MS-CHAPv2 provides two-way authentication and is more secure.
EAP-MS-CHAPv2
Universal authentication Framework for VPN. Meaning, it allows third party vendors to develop their own authentication schemes like smart cards and biometrics.
Split tunneling
Allows some information to be sent through a VPN (E.G. sensitive documents), and some to be sent through another connection (E.G. Americas got talent).
What is DirectAccess?
Introduced with Win7/Server ‘08. Allows seamless bi-directional intranet connectivity to directaccess clients when they are connected to the internet. DirectAccess connections automatically established. Uses IPsec and IPv6, most oten used manage computers and push configuration changes and critical updates.
RADIUS
Remote Authentication Dial In User Service. Networking protocol. Provides centralized AAA management for computers to connect to and use a network service.
IBSS
Independant Basic Service Set. Ad-hoc. Connects hosts directly to other computers using wireless adapters.
ESS
Extended Service Set. Infrastructure. Connects to WAP using a wireless adapter.