Subject: Re: CISCO AIRONET WIRELESS LAN CARD
To: dkwok <dkwok@iware.com.au>
From: Steven M. Bellovin <smb@research.att.com>
List: port-i386
Date: 05/25/2001 08:59:21
In message <005701c0e4e3$f77198a0$ec01a8c0@iware.com.au>, "dkwok" writes:
>This is a multi-part message in MIME format.
>
>------=_NextPart_000_0054_01C0E537.C812A140
>Content-Type: text/plain;
>	charset="iso-8859-1"
>Content-Transfer-Encoding: quoted-printable
>
>Tossing over the idea of using Orinoco or Cisco Aironet 350.
>
>The supplier told Cisco Aironet does not need to register the key and =
>Orinoco does. Aironet seems to be more stable and easy to installed too. =
>Any comment please.
>
Orinico 802.11 cards use static keys -- one key for all users of the 
access point.  For may reasons, this is a seriously bad idea from a 
security perspective.  Cisco has some sort of key negotiation, which is 
good from a security perspective.  But it's not standardized, so you're 
stuck with Cisco gear only, you need a Cisco access point, and I have 
no idea if any driver or daemon code are needed and if so if NetBSD has 
that stuff.


		--Steve Bellovin, http://www.research.att.com/~smb