Win PCs over wireless
-
I have a few win PCs connecting over wireless connections.
My understanding is wireless connections can be hacked very easily?Should I secure the PCs with a VPN to the pfsense box to mitigate against potential wireless issues?
If so, I should be seamless to the user i.e. i think the win10 as a inbuilt vpn connection, or would it be better to setup a wireguard connections?
-
@gwaitsi Thought about WPA Enterprise which would require the user to have a certificate and valid id on the Radius server ?
-
@gwaitsi said in Win PCs over wireless:
wireless connections can be hacked very easily?
Yeah if your stupid about it ;) But wpa2/3 with good psk isn't wep that could be hacked in minutes..
wpa2 and now wpa3 are quite secure if setup correct with unique ssid and strong psk (say 20 characters) Its a one time thing that has to be entered... But sure if you want to go above and beyond could setup eap-tls auth.. Where require a cert to auth with, etc. Can be done pretty easy with the freerad package and AP that support enterprise mode.
as @NogBadTheBad suggests
-
@johnpoz I'm using WPA2 Personal. Although the OpenWRT supports WAP3, i don't believe the laptops support it. Need to double-check. But thought it is not secure during the initial handshaking. Not really au fait with it, but am paranoid about security - All access points support WPA3 just checked