You are on page 1of 41

6/8/2011

Wireless

Introduction to Wireless

6/8/2011

Wireless LANs
IEEE standard 802.11
Various transmission rates, depending on the
standard:
802.11a 54 Mbps 5 GHz
802.11b 11 Mbps 2.4 GHz
802.11g 54 Mbps 2.4 GHz
802.11n up to 4 x150 Mbps 2.4 or 5 GHz

Wireless Modulation
Direct Sequence Spread Spectrum (DSSS)
Frequency Hopping Spread Spectrum (FHSS)
Orthogonal frequency-division multiplexing
(OFDM)

6/8/2011

Carrier Sense Multiple Access with


Collision Avoidance
CSMA/CA also called Request-to-send, Clear-toSend

References

http://en.wikipedia.org/wiki/IEEE_802
http://en.wikipedia.org/wiki/802.11
http://en.wikipedia.org/wiki/Direct-sequence
http://en.wikipedia.org/wiki/Frequency-hopping

6/8/2011

Wireless Communication
Standards

At the end of this lesson you will be


able to:
Compare the characteristics of wireless
communication standards

Network+ 2009 Exam objective 1.7

6/8/2011

What we will cover

INTRODUCTION TO WIRELESS
TECHNOLOGY

6/8/2011

Wireless LAN (WLAN)


Wireless LANs use Radio Frequencies (RF)
Antenna radiate RF as Radio Waves.

Wireless Agencies and Standards


IEEE
WLANA

Wi-Fi

FCC

ETSi

6/8/2011

The IEEE 802.11 Standards

802.11a:
802.11b:
802.11d:
802.11e:
802.11f:
802.11g:
802.11h:

5GHz, 54Mbps
2.4GHz, 11Mbps
Multiple regulatory domains
Quality of Service (QoS)
Inter-Access Point Protocol (IAPP)
2.4GHz, 54Mbps
Dynamic Frequency Selection (DFS) and
Transmit Power Control (TPC)
802.11i: Security
802.11j: Japan 5GHz Channels (4.9-5.1 GHz)
802.11k: Measurement
802.11m: Maintenance
802.11n: 150-600Mbps, MIMO, 250m

802.11 allows for half-duplex


communication

6/8/2011

Carrier Sense Multiple Access with


Collision Avoidance (CSMA/CA)

Also called Request-to-send, Clear-to-Send

Unlicensed Wireless Frequency Bands

6/8/2011

Industrial, Scientific and Medical (ISM)


2.4 GHz Channels
1

14

14 Channels each channel 22 MHz wide


4 sets of 3 non-overlapping channels, only one set used at a time

802.11b and 801.11g use 14 overlapping


channels in the 2.4GHz - Industrial, Scientific and
Medical (ISM) band
In the USA, 12 overlapping channels are used.
Channels 1,6, and 11 are non-overlapping.

Unlicensed National Information


Infrastructure (UNII) 5Ghz Band

801.11a use 12 non-overlapping channels in


the 5GHz Unlicensed National Information
Infrastructure (UNII) band.

6/8/2011

802.11a
5Ghz
Maximum bandwidth of 54Mbps
Modulation Orthogonal Frequency Division
Multiplexing (OFDM)

802.11b
2.4Ghz
Maximum bandwidth of 11Mbps
Modulation Direct Sequence Spread
Spectrum (DSSS)

10

6/8/2011

802.11g

2.4Ghz
Compatible with 802.11b
Maximum bandwidth of 54Mbps
Modulation Orthogonal Frequency Division
Multiplexing and Direct Sequence Spread
Spectrum (for 802.11b compatibility)

802.11n
Higher throughput improvements using MIMO
(multiple input, multiple output antennas)
2.4Ghz and/or 5Ghz
Compatible with 802.11a/b/g
Maximum bandwidth of 600Mbps ( up to 4 x
150Mbps)
Modulation Orthogonal Frequency Division
Multiplexing and Direct Sequence Spread
Spectrum (for 802.11b compatibility)

11

6/8/2011

Certified to be interoperable with


other Wi-Fi devices

COMPARING 802.11 STANDARDS

12

6/8/2011

Wireless LAN Modulation Techniques


Frequency-Hopping Spread
Spectrum
Direct-Sequence Spread
Spectrum
Orthogonal Frequency
Division Multiplexing

Range Comparison

13

6/8/2011

802.11 Standard Comparison


802.11a

802.11b

802.11g

802.11n

Frequency

5 GHz

2.4 GHz

2.4 GHz

5/2.4 GHz

Transfer Rate

54 Mbps

11 Mbps

54 Mbps

Up to 600
Mbps

Outdoor Range 390 ft/120 m

460 ft/140 m

460 ft/140 m

820 ft/250 m

Indoor Range

115 ft/35 m

125ft/38 m

125ft/38 m

230 ft/70 m

Compatibility

802.11n

802.11g/n

802.11b/n

802.11a/b/g

Review

Wireless standards 802.11 a/b/g/n


Frequency bands
Channels
Maximum distances
Maximum data throughput

14

6/8/2011

Wireless Security Standards

At the end of this lesson you will be


able to:
Compare the characteristics of wireless
communication standards

Network+ 2009 Exam objective 1.7

15

6/8/2011

What we will cover

Authentication and encryption

WEP

WPA

TKIP

RADIUS

Wireless Security
All Wi-Fi Certified wireless LAN products are shipped in "open-access"
mode, with their security features turned off.

War
Driving

16

6/8/2011

Advanced Security Terms

WEP Wired Equivalent Privacy


EAP Extensible Authentication Protocol
TKIP Temporal Key Integrity Protocol
WPA Wi-Fi Protected Access (WPA)
RADIUS Remote Authentication Dial In User
Service

Wi-Fi Security Background


Wired Equivalent Privacy (WEP)
Security mechanism defined in original 802.11 standard
Designed to protect against wireless eavesdropping
Simple encryption algorithm with fixed key
WEP issues
Required user intervention to enable security
WEP key must be entered into each device
No authentication
Hacking tools developed to exploit vulnerability

17

6/8/2011

Wi-Fi Protected Access


Defined by the Wi-Fi Alliance
Mandatory for Wi-Fi certification
Based on IEEE 802.11i draft 3.0
Intended to be software/firmware upgrade from WEP for
legacy wireless devices
Key elements
802.1x authentication
Extensible Authentication Protocol Transport Layer Security (EAPTLS) for authentication management systems
Pre-Shared Key (PSK) for real-time applications

Encryption and key rotation

Temporal Key Integrity Protocol (TKIP)


RC-4 encryption algorithm

Validation

Michael message integrity check (MIC)

Temporal Key Integrity Protocol (TKIP)


Implements a key mixing
function that combines
the secret root key with
the initialization vector
before passing it to the
RC4 initialization
WPA implements a
sequence counter to
protect against replay
attacks.
Implements a 64-bit
message integrity check
named MICHAEL.

18

6/8/2011

WPA Modes
Enterprise Mode (802.1x)
Intended to provide maximum security level
Authentication server required
Centralized management of user credentials (certificates,
smart cards, etc.)
Personal Mode (Pre-shared Key)
Utilizes a common setup password (pre-shared key)
Allows faster handoffs by eliminating need to access
authentication server
Strong passwords recommended to protect against
dictionary attacks

802.1x Authentication

19

6/8/2011

Remote Authentication Dial In User


Service (RADIUS)

Is a client/server Application layer protocol

Provides centralized Authentication, Authorization, and


Accounting (AAA) management

http://en.wikipedia.org/wiki/File:Drawing_RADIUS.png

Review
Authentication and encryption
WEP
WPA
TKIP
RADIUS

20

6/8/2011

Installing Wireless

At the end of this lesson we will be


able to
Implement a Basic Wireless Network

Network+2009 Objective 3.4

21

6/8/2011

What we will cover


Wireless Devices WAP, NIC, Antenna
Wireless Access point placement
Installing the Access Point
Installing the Wireless Client
Verifying the installation

Wireless Devices
NIC
WAP

Antenna

22

6/8/2011

Wireless Access Points (WAP)

Wireless Network Interface Card (NIC)


USB

Notebook
PCMCIA
Desktop NIC

23

6/8/2011

Wi-Fi Antenna come in many shapes,


size, and Gain

Antenna Pattern

24

6/8/2011

DIY Wi-Fi Antenna


Cantenna (Can Antenna)

WHERE TO PLACE YOUR WAP

25

6/8/2011

Proper WAP placement is important for full


coverage

For best performance, do not set


adjacent AP on the same channel

26

6/8/2011

WIRELESS MODES (SERVICE SETS)

Independent Basic Service Set (IBSS)

Also called Ad-Hoc Mode

27

6/8/2011

Basic Service Set (BSS)

Mobile clients use a single AP for connectivity to


each other or the wired network
Infrastructure Mode

Extended Service Set (ESS)

Two or more Basic Service Sets (BSS) are


connected by a common distribution system.
Infrastructure Mode

28

6/8/2011

Client/AP Association

If more than one AP replies, the client will associate based on


the information returned.

Client/AP Re-association

29

6/8/2011

Simple Wireless Setup

Configure Access Point


SSID

Channels

Security
Admin Password
Broadcast SSID
MAC Filtering
Encryption
WEP
WPA
WPA2

30

6/8/2011

Configure SSID, Channel, and Network


Mode

Configure Security Settings

31

6/8/2011

WPA Personal

WPA (Wi-Fi protected access)


Wireless security protocol using TKIP
(Temporal Key Integrity Protocol)
encryption, which can be used in
conjunction with a
RADIUS server.

32

6/8/2011

WPA2 Personal

WPA2 Mixed Mode

33

6/8/2011

Addition Features

DHCP
NAT (PAT)
URL Filtering
Port Forwarding

Install Wireless Client


Configure SSID
Use same security settings as AP (WAP or
WAP2)
Enter shared-key (Passphrase)

34

6/8/2011

Verify the Installation

Review
Wireless
Devices
Installing
the Access
Point

WAP
NIC
Antenna

Placing the
Wireless
Access
Point

Verifying
the
installation

Installing
the
Wireless
Client

35

6/8/2011

Designing Large Wireless


Networks

At the end of this lesson we will be


able to
Implement a Basic Wireless Network

Network+2009 Objective 3.4

36

6/8/2011

Agenda

Mesh Wireless Network


Mesh WAP
Light Weight Access Points
Lightweight Access Port Protocol (LWAPP)

Mesh Wireless Networks

https://webspace.utexas.edu/nealb/www/cisco_mesh.jpg

37

6/8/2011

Wireless Mesh Networks


MAPs

Wired

Wired
RAP

RAP

Wireless
Links

Root Access Points (RAPs) connect to the wired


network and acts as the gateway to the wired
network.

Wireless Mesh Diagram


MAPs

Wired

Wired

RAP

RAP

Wireless
Links

Mesh Access Points (MAPs) connect to, up to 32 other


MAPs, using 5GHz.

38

6/8/2011

Wireless Mesh Diagram


MAPs

Wired

Wired
RAP

RAP

Wireless
Links

On boot-up a MAP will attempt to become a RAP, if its


is connected to a wired network

Wireless Mesh Diagram


MAPs

Wired

Wired

RAP

RAP

Wireless
Links
Root Access Points (RAPs) connect to the wired network and acts as the gateway to the wired
network.
Mesh Access Points (MAPs) connect to, up to 32 other MAPs, using 5GHz.
On boot-up a MAP will attempt to become a RAP, if its is connected to a wired network

39

6/8/2011

Mesh AP
Cisco 1500 Series Outdoor Mesh AP

Lightweight Access Point Protocol


(LWAPP)

40

6/8/2011

Cisco Aironet AP 1010 Lightweight


Access Point with Internal Antennas

Review

Mesh Wireless Network


Mesh WAP
Light Weight Access Points
LWAPP - Lightweight Access Port Protocol

41

You might also like