SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsCapable IDS/IPS is available for 802.11 specific needs, notably from AirDefense (recently purchased by Motorola), Cisco, AirMagnet and Aruba, but deployment is prohibitive for small and medium enterprises for a number of reasons. Cost is one of the main factors. The investment needed in equipment alone is prohibitive let alone the staffing levels and training necessary to configure, monitor and respond to raised alarms. Because of this many small and medium enterprises will opt to forego these systems to the detriment of their wireless network security. There exists a low cost option. For a minor investment in equipment, the combination of Kismet on OpenWRT can provide IDS capability. But is it a viable option for small and medium enterprises? Will small enterprises have staff with the technical ability to install, maintain and monitor this solution? Are the reported alarms going to be understood by typical small company staff?