Khusela iNethiwekhi Yakho Engenantambo

Ukuqonda iingongelo kunye nendlela yokukhusela intanethi yakho

Ukufumana ngexabiso

Ukulungelelaniswa kwezintambo ezingenazintambo ziza ngexabiso. Ufikeleleko lwe-intanethi oluxhasayo lunokulawulwa ngenxa yokuba idatha iqulethwe kwi-cabling edibanisa ikhomputer. Ngomnatha ongenazintambo, "ikhonkco" phakathi kwekhompyutha kunye nomtshini kuthiwa "umoya", apho nayiphi na ifowuni phakathi kwendawo inokufikelela. Ukuba umsebenzisi unako ukudibanisa nenqanaba lokufikelela elingenazintambo ukusuka kwii-300 iienyawo kude, ngoko-ke inkolelo ukuze umntu omnye angene kwi-300 engama-rowus ye-wireless point point.

Iisongelo kwiKhuseleko loNxibelelwano lweN Wireless

Ukukhusela iNethiwekhi yakho kwi-WLAN yakho

Ukhuseleko oluphuculweyo sisizathu esihle sokusetha i-WLAN yakho kwi-VLAN yayo. Unako ukuvumela zonke iifowuni ezingenantambo ukuba zixhumane ne-WLAN, kodwa khusela lonke inethiwekhi yakho yangaphakathi kuyo nayiphi na imiba okanye ukuhlaselwa okungenzeka kwinethiwekhi engenazintambo.

Ukusebenzisa i-firewall, okanye i-ACL router (izintlu zokulawula ufikelelo), unokunqanda ukuhanjiswa phakathi kwe-WLAN kunye nenethiwekhi yonke. Ukuba udibanisa i-WLAN kwinethiwekhi yangaphakathi nge-proxy yewebhu okanye i-VPN, unako ukukhawulela ukufikelela kwiifowuni ezingenazintambo ukwenzela ukuba bakwazi ukurhweba iWebhu kuphela, okanye bavunyelwe ukufikelela kwiifolda ezithile okanye izicelo.

Ufikeleleko lweWLAN Access

Ukubhaliweyo kweNkcazo
Enye yeendlela zokuqinisekisa ukuba abasebenzisi abangagunyazisiweyo abayekanga kwiinkonzo zakho ezingenazintambo kukubethela idatha yakho engenantambo. Indlela yokuqala yokubhala, i-WEP (eyimfihlo yelungu eliyimfihlo), yafunyaniswa ibe yintsilelo. I-WEP incike kwisihlomelo esabelana ngaso, okanye iphasiwedi, ukukhawulela ukufikelela. Nabani na owaziyo ukhiye weWEP unokujoyina inethiwekhi engenazintambo. Kwakungekho ndlela eyakhiweyo kwi-WEP ukutshintsha ngokuzenzekelayo ukhiye, kwaye kukho izixhobo ezikhoyo ezinokuqhawula ukhiye weWEP kwiminithi, ngoko kuya kuthatha ixesha elide umhlaseli ukuba afumane inethiwekhi ye-wireless encrypted WEP.

Nangona usebenzisa i-WEP kunokube bhetele kunokuba ungayisebenzisi nhlobo ukubhalwa kwe-encryption, akunakwanele ukukhusela inethiwekhi yoshishino. Isizukulwana esilandelayo sokubhalwa kwe-encryption, i-WPA (Wi-Fi Protect Access), yenzelwe ukuphakamisa iseva yokuqinisekisile eyi-802.1X-authentication server, kodwa inokusebenza ngokufanayo ne-WEP kwi-PSK (I-Key Shared Pre-mode). Uphuculo oluphambili oluvela kwi-WEP ukuya kwiWPA lusetyenziso lwe-TKIP (iProjekite Key Key Integrity Protocol), eguqula utshintsho oluphambili ukukhusela uhlobo lweendlela zokuqhafaza ezisetyenziselwa ukudibanisa i-WEP encryption.

Nangona iWPA yayingumncedisi we-band-aid. I-WPA yayiyilingo le-wireless hardware kunye nabathengisi beekhompyutha ukuba baqalise ukukhusela ngokwaneleyo ngelixa belinde umgangatho oseburhulumenteni we-802.11i. Ifom yeyona ndlela ekhoyo yangoku ye-encryption yiWPA2. I-encryption ye-WPA2 inikeza iinkqubo ezinzima kunye neendlela ezikhuselekileyo kuquka neCCMP, esekelwe kwi-algorithm ye-AES encryption.

Ukukhusela i-wireless data ukuba ingamkelwa kunye nokukhusela ukufikelela okungagunyazisiweyo kwinethiwekhi yakho engenazintambo, i-WLAN yakho kufuneka isetyenziswe ubuncinane kunye ne-WPA encryption, kwaye mhlawumbi i-WPA2 encryption.

Ukungqinisiseki kokungenantambo
Ngaphandle kokubethela i-data engenazintambo, i-WPA inokusebenzisana ne-802.1X okanye i-RADIUS-certification servers ukubonelela indlela ekhuselekileyo yokulawula ukufikelela kwi-WLAN. Xa i-WEP, okanye i-WPA kwimodi ye-PSK, ivumela ukuba kufumaneke ukungafihlisi ukufikelela kumntu onokhiye ochanekileyo okanye iphasiwedi, u-802.1X okanye i-RADIUS ukuqinisekiswa kufuna ukuba abasebenzisi babe negama lomsebenzisi elichanekileyo kunye neenkcukacha zephasiwedi okanye isatifikethi esisemthethweni ukungena kwinethiwekhi engenazintambo.

Ukufuna ukuqinisekiswa kwi-WLAN inikezela ukhuseleko olwandisiweyo ngokunciphisa ukufikelela, kodwa kunika kwakhona ukungena kunye neendlela zokuhlola ukuba kukho nayiphi na isikroso. Ngoxa umnxibelelwano ongenazintambo osekelwe kwikhiye olwabiwo ungabhalisa i-MAC okanye idilesi ze-IP, olo lwazi aluncedo kakhulu xa kufikelelwe ekuqaliseni imbangela yeengxaki. Ukugcinwa okuyimfihlo kunye nobugciniweyo obonelelwe kunyanzeliswa kwakhona, ukuba kungenjalo, kwiimvume ezininzi zokuthobela ukukhuselwa.

Nge-WPA / WPA2 kunye ne-802.1X okanye i-RADIUS isiqinisekiso somncedisi, imibutho inokuvelisa iiprotokholi ezahlukeneyo, ezifana ne-Kerberos, MS-CHAP (iProsoft Challenge Handshake Authentication Protocol), okanye iTLS (iTable Layer Security), kwaye isebenzise uluhlu iindlela zokuqinisekisa ubungqina njengamagama abasebenzisi / amaphasiwedi, izatifikethi, ukuqinisekiswa kwe-biometric, okanye iiphasiwedi zexesha elilodwa.

Unxibelelwano olungenazintambo luyakwandisa ukusebenza kakuhle, luphuculise umkhiqizo kwaye luyenze inethiwekhi eninzi, kodwa ukuba ayilungiswanga ngokufanelekileyo, ingaba isithende se-Achille yokhuseleko lwenethiwekhi yakho kwaye ibonise ukuba yonke inhlangano idibanise. Thatha ixesha lokuqonda ingozi, kunye nendlela yokukhusela inethiwekhi yakho engenazintambo ukwenzela ukuba intlangano yakho inokubangela ukuba kube lula ukuxhumeka kwentambo ngaphandle kokudala ithuba lokuphula umthetho.