Monthly Archive for August, 2006

The Internet… #4

One of the greatest assets of our new house is my office. Not since high school have I had 200 square feet that was solely mine. My office is on the end of the house and backs up to several homes on a busy street behind us. From my office I can “see” six wireless networks including my own. All of these wireless networks belong to my neighbors.

A few of them have innocuous SSID’s such as “Linksys” but many of them identify the house from which they originate, usually with a last name. Of those six networks that are available only two of those have any type of encryption on them and one of those is my own. I have offered my neighbors my tech services to help them lock those up but to date have not been taken up on my offer. I have heard a few of them say that they like the idea of being altruistic and sharing their bandwidth, however I wish I could thoroughly explain to them the danger of leaving your wireless network unencrypted.

It is truly dangerous not to secure your wireless hub. I have vowed not to allow this blog to become too technical but there are a few things that I need to discuss to explain this. Wireless hubs work like a network hub and not a switch, meaning that all of the traffic from your computer is broadcast to every other computer on that network. This is normally not a problem on wired hub driven networks in that you can usually trust everyone on your network. However, on a wireless network, without encryption, you are trusting anyone who decides to logon to your network. Techniques such as ARP spoofing allow hackers to easily play the man in the middle between you and anyone you are contacting on the Internet. This would allow anyone to read any of your email and watch your traffic.

So how does one protect themselves from such attacks? It is really simple but sounds complicated. Depending on your wireless router all of the setups will be different but will all have some or all of the following wireless security options.

  • WEP
  • WPA Personal
  • WPA2 Personal
  • WPA Enterprise
  • WPA2 Enterprise

Do not use WEP encryption. It uses a very secure form of encryption called RC4, however it was implemented poorly and is easily hacked. There are no less than 1000 pages on the Internet explaining how to hack WEP encryption. It can be done in less than 30 minutes if you know what you are doing. WPA encryption on the other hand is virtually uncrackable depending on the length and randomness of your password. I do not see much benefit between WPA and WPA2 and most newer wireless routers will do both at the same time upon detecting what kind of wireless card is trying to logon. If your wireless router does not offer both simultaneously I suggest using just WPA as you never know if the wireless card trying to logon will support WPA2.

The difference between personal and enterprise has to do with the method used for authentication. WPA Enterprise can authenticate against databases as the personal version simply uses a key (password). For home use I truly believe that WPA Personal is more than adequate and is much easier to setup. All that is required is a key that is shared between the wireless router and the client which is your computer with a wireless card.

I mentioned a moment ago length and randomness. It is very important that your key or password for WPA encryption be long and random. Using your pet’s name fluffy will not do the trick, as anyone with a password dictionary will come up with that one pretty quick. I recommend using a very long and random key. I use a key generator to come up with my keys. It is a hassle when someone comes over to use my network but worth the trouble for the security. When someone comes over I do one of two things. I either temporarily turn off the network security while they are here, or I copy and paste the password key from a USB flash drive.

So this is the quick and dirty on setting up a safe wireless network. It really is not that big a deal, just important to follow a few basics. Maybe I will get my neighbors to add a little security to their networks sometime soon.

ET phones home with Firefox…

H-T - Firefox Cropcircle 

Shout out for A2

I have for many years hosted pcnelson.com on WebHostingBuzz. There is a considerable barrier to changing ones host for their website. It takes no small amount of time to move files over and get your email working on a new host. There is also the added chance of missing important emails as DNS changes propogate over the Internet. But my inertia was overcome a few weeks ago by some fairly major problems that I had with WebHostingBuzz. The problems had always been there, but I was able to overlook most of them until my email bounced for two days with not much response from their tech support. I have since been in contact with their COO, Matt Russell who made me fell much better about the situation, but by that time the change was already made.

I spent an evening searching the Internet for a new hosting company which is an overwhelming task. So after just a few minutes I decided to ask who my friends were using. A quick, “they are awesome” from Robb and I was half way sold. I was pushed over the edge when I noticed that my GTD mentor, Merlin Mann was a user of A2 Hosting.

I did a quick signup and began to upload information. On a whim I decided to ask A2 if they would be willing to let me relay email from my spam firewall at the office. After thoroughly expaining what I wanted to do they actually made it happen. The opened a port to my Barracuda spam firewall, made the DNS changes and wow - now I am filtering all my email through this box.

I really could not believe that they were willing to make this happen for me since it required a specific server setting to allow the relay. Thanks A2 and I will send all that I can your way.

After a week of terror…

The past few weeks have a little stressful with all that has been going on in the world. Leave it to Jon Stewart and the Daily Show to help us laugh about it a little.

Much safer than a lighter!

iScorch

This is a true statement about the times in which we live. I am just not sure what it says.

I did not realize that the marriage between rednecks and geeks was so complete that it was socially acceptable today to “light” your iPod for your favorite band. Who needs to flick a bic when you can light your iPod? So the next time you are at a Bon Jovi concert save the fuel and pull out the iPod - what rocker would not be honored by such a tribute?

The ultimate Bible lifehack

I have never been much of a note taker in my Bible. I always sort of looked enviously on those Bibles that showed years of sermon notes and wear. The problem is that I can hardly read my writing that is composed at a desk much less my own script that is patterned on onion skin paper while resting in my lap. As of late, I have adopted a wonderful note taking book, the moleskine which of course is championed by 43 Folders. The moleskine has large enough rule that if I concentrate hard I can make out my scribble the next day. In the two months that I have been doing this I have really enjoyed having those notes to go back to.

Today, however, I came across this ingenious idea and thought I would share it with you die hard note takers. This serious student of scripture has built his own blank page Bible. It seems a little cumbersome to carry and a great deal of work to construct, however you are left with the finest note taking Bible around.

H-T The Shepherd’s Scrapbook - Part 1

H-T Part 2 - the failure

H-T Part 3 - the success