Individual Project Proposal

Project title

Implementation of a Security Wireless LAN for the company

Key words

Wireless; Network Security; Capital Portal; pfSense

Problem definition

Nowadays, information technology updates second by second. Wide range of business software application systems are designed to cater diversified business needs. Especially for the wireless network, it can be save a lot cable. For this reason, it has been spreading rapidly around the campus, café, airport etc. Unfortunately, many implementations are being done without attention to issues of security and authentication. As a result, most wireless networks are set up so that anyone with proper equipment can access the network, even from outside the building. Anyone with the improper tools can also spy on traffic. They can see WEP key or password as well as other data. These dangers are not just theoretical. Tools to tap nearby wireless networks are widely available, even for palmtop devices. A whole subculture has sprung up of people going around, scanning for open wireless nodes, and publicizing them to people who want free wireless access.

Global aim

Base on the above problem. I want to setup a more and reliable wireless method for our visitors do a couple of things of my company. It is called “captive portal”. There are little points why I want to do it. One, it helps us to be a hospitable host. Two, it protects us. We may not know these guests very well, and we may not know whether they are network spies. If our guests have their own wireless network, or at least a separate SSID, then they won’t insist on using our corporate network, and we can worry less about whether they pose security risks.

Most enterprise-level wireless LAN infrastructures include the ability to support multiple SSIDs from a single wireless LAN switch, meaning we can set aside one for guest access. Some include the ability to support VLANs, which means we can support guests without compromising the corporate network. Guest users can be provisioned on a separate VLAN keeping them completely isolated.

Objectives

For this project, I will design and implement a “captive portal” firewall and network. A captive portal is a wireless local area network (WLAN) commonly used in small businesses to offer convenient wireless connectivity to customers. WLAN access offered at a coffee shop or at an airport is a typical example of a hot spot service. The objective of this project is to understand how routing and IP network security (firewalls and IP masquerading – also known as network address and port translation) can be integrated to offer secure wireless connectivity or “captive portal” service. Understanding of the following will result from this project.

Join now!
  • Functioning of 802.11-based wireless access network
  • DHCP server use and configuration
  • Port forward use for firewalling and IP masquerading
  • Configuring a workstation running Linux to work as a router and moderately sophisticated security gateway
  • Web-based authentication

Evidence of requirement

According to the business purpose, there are many visitor will come to our company. Many of them are use the wireless of their notebook to connect to internet. So we need to provide the wireless network for them. However, we only use a WEP key for the encryption, and there are a few security ...

This is a preview of the whole essay