WPA3在2018年为无线安全添砖加瓦

简介: Wi-Fi Alliance Announces WPA3, the Successor to Wi-Fi's WPA2 Security ProtocolThe Wi-Fi Alliance -- compris...

Wi-Fi Alliance Announces WPA3, the Successor to Wi-Fi's WPA2 Security Protocol

The Wi-Fi Alliance -- comprising 15 major sponsor members (including Apple, Cisco, Dell, Intel, Microsoft, Qualcomm and more) and hundreds of contributing members -- has announced that WPA3 will be introduced during 2018. 

WPA3 is not an immediate replacement for WPA2, which will continue to be maintained and enhanced. In particular, the Alliance will introduce new testing enhancements for WPA2 to reduce the potential for vulnerabilities caused by network misconfigurations; and will further safeguard managed networks with centralized authentication services.

New Wi-Fi Alliance WPA3 certified devices will take some time to filter into widespread use. Use of the new specification will require WPA3 devices and WPA3 routers -- and since the vast majority of home wi-fi users never buy a router but use the one supplied by their ISP, many users won't become WPA3 compatible before they change ISPs. That could take several years.

WPA3 Security ProtocolNevertheless, there are some welcome enhancements over the WP2 specification that has kept users largely, but not entirely, protected for around two decades.

Four new capabilities for both personal and enterprise networks have been announced. There are no technical details in the Wi-Fi announcement, leading to some conjecture over exactly how they will be introduced.

The first will be to provide "robust protections" even when the user fails to use a strong password. Mathy Vanhoef, the researcher who discovered the KRACK WPA2 vulnerability, has suggested on Twitter, "That means dictionary attacks no longer work. The handshake they're referring to is likely Simultaneous Authentication of Equals (SAE). Which is also called Dragonfly;" adding, "The standards behind WPA3 already existed for a while. But now devices are  *required* to support them, otherwise they're won't receive the "WPA3-certified" label."

The second will simplify the process of configuring security on wi-fi devices that have limited or no display interface. The obvious use will be for small personal devices, like wearables such as smart watches -- but it could also play some role in improving the future security of the industrial internet of things.

The third will improve the security of open wi-fi hotspots -- such as cafes, hotels and airport lounges -- by giving each user individualized data encryption. On this, Vanhoef commented, "This might refer to Opportunistic Wireless Encryption: encryption without authentication." It won't make the use of wi-fi hotspots completely secure, but should go some way to reassuring security officers who know that corporate employees work from hotspots while traveling.

The fourth will be a 192-bit security suite aligned with the Commercial National Security Algorithm (CNSA) Suite, that will further protect wi-fi networks with higher security requirements; such as government, defense, and industrial.

We can expect that new WPA3 devices will start to appear over the next few months -- particularly since many of the manufacturers will be members of the Alliance. However, the devices will need wait for the launch of the Wi-Fi Alliance's formal certification process before they can be truly called such. The Wi-Fi Certified designation will be important to reassure buyers.

"Security is a foundation of Wi-Fi Alliance certification programs, and we are excited to introduce new features to the Wi-Fi CERTIFIED family of security solutions," commented Edgar Figueroa, president and CEO of Wi-Fi Alliance. "The Wi-Fi CERTIFIED designation means Wi-Fi devices meet the highest standards for interoperability and security protections."

目录
相关文章
|
6天前
|
安全 5G 网络安全
什么是无线广域网 (WWAN) ?
【4月更文挑战第12天】
12 0
什么是无线广域网 (WWAN) ?
|
7月前
|
物联网 5G 开发者
蜂窝无线网络技术及常用场景(二)
蜂窝无线网络技术及常用场景(二)
178 0
|
7月前
|
物联网 5G 定位技术
蜂窝无线网络技术及常用场景(一)
蜂窝无线网络技术及常用场景(一)
228 0
无线工勘
无线工勘项目流程 第一阶段:调研阶段 1) 客户的现场情况(建筑布局、规模、干扰源) 2) 了解客户的覆盖需求(向客户了解哪些地方需要覆盖) 3) 用户的分布情况(那些地方人多,哪些地方人少) 4) 现场情况:建议要 CAD图加现场走一遍 5) 覆盖要求:问客户加给出建议 6) 第二阶段:设计阶段 1)在CAD图上标注点位 第三阶段:测试阶段 根据你的设计方案,带几个临时AP,去测试 第四阶段:最终定稿 AP分为三大类:室外型AP、放桩型AP、面板性AP ———————————————— 版权声明:本文为CSDN博主「智慧云工具箱」的原创文章,遵循CC 4.0 BY-SA版权协议,转载请附
无线工勘
|
传感器 数据采集 监控
IOT常用通信方式(有线、无线)
整理归纳了IOT常用的有线和无线通信方式,供使用时备查
2444 0
|
物联网 芯片 网络架构
从有线变无线:ZigBee技术在温控系统中的应用
现有温控系统都是有线,一旦主控制芯片出现了问题,整个系统就会崩溃。
535 0
|
物联网 网络架构
IOT常用通讯方式(有线、无线)
归纳了IOT中常用的有线和无线通讯手段
3829 0
|
数据安全/隐私保护 网络架构 安全
|
安全 网络安全 数据安全/隐私保护