|
Wireless &
Mobile Computing Security
Tips for Wireless Security
- Enterprises should look at the enterprise
security principles and infrastructure before deciding on handheld security
software. Therefore, wireless security issues should be addressed consistent
with overall enterprise security architecture.
- You should analyze the entire transaction or
message path, including wireless
network, VPN gateways, wireless network provider's routers/gateways, network
interconnections between ISPs and the enterprise, enterprise firewalls,
enterprise authentication servers, user location hardware like wireless
routers and handheld device itself
- Extend existing authentication management
infrastructure for mobile security, if possible assuming that such software
supports wireless networks and mobile devices.
- If you are medium or large enterprise, focus
on directories, authentication servers, access management servers, VPN
gateways and IP address management tools
- Install anti-virus software for the handheld
device.
- Roaming issues between wireless networks
should be considered. Remember, wireless security is a problem in not only
wireless LANs. It is also a problem in wireless wide-area networks,
including those supplied by ISPs.
- Install filtering to avoid flooding of e-mails
on handheld devices
- Besides user id and passwords, augment
security by at authentication servers, smart cards, biometrics, PKI or
digital certificates.
|