Tightening WLAN Security: AiroPeek

執筆者
Andrew Garcia
Andrew Garcia
Published: Sep 3, 2001
Updated: Feb 2, 2021
3 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

The holes in 802.11bs built-in security will drive any LAN administrator worth his or her salt to alternative methods of tightening wireless transmissions. But to secure a network, you have to know what its doing.

Enter WildPackets Inc.s AiroPeek 1.1, an affordable and easy-to-use wireless protocol analyzer. Although somewhat lacking in in-depth comparative analysis tools and summaries, AiroPeek makes a handy addition to any wireless administrators toolbox and is a valuable asset for auditing or—unfortunately for the very same administrators—hacking wireless networks.

Using AiroPeek, network administrators can check their wireless security by identifying unauthorized clients or access points and verifying encryption usage. By providing signal-strength counters, AiroPeek can also be used for site survey or to spot possible interference issues or weak spots in the radio coverage area.

With Version 1.1, WildPackets has addressed some obvious shortcomings in the previous version of AiroPeek. Version 1.1 includes channel scanning capabilities, post-capture decryption of packets encrypted by WEP (Wireless Equivalent Privacy), management packet decodes and several new kinds of filters.

Released in June, AiroPeek 1.1 costs $1,995—significantly less than Network Associates Inc.s Sniffer Wireless, which costs $9,995 for a perpetual-use license. However, AiroPeek lacks many of the in-depth analysis tools and charts that come with Sniffer Wireless. WildPackets does offer an additional analysis package, NetSense, for $995.

Although AiroPeek can sniff any 802.11b-compliant wireless network, the software must be used with certain hardware. WildPackets has increased hardware support, providing promiscuous client drivers for Cisco Systems Inc., 3Com Corp., Intel Corp., Nortel Networks Ltd. and Symbol Technologies Inc. adapters.

Those familiar with EtherPeek for wired networks will feel at home with AiroPeek. The packet decode window, logs and bandwidth utilization meters are based on the same design, with added wireless-related metrics.

In eWeek Labs tests, we were able to quickly pinpoint rogue access points on our test network. By creating a filter to ignore all packets with known access point hardware addresses, we identified an unknown transmitters MAC address, IP address and network name.

In our tests, AiroPeek occasionally crashed on Windows 2000 systems with VPN (virtual private network) client software installed. WildPackets officials acknowledge this problem with the EtherPeek family and said they are exploring the AiroPeek problems we saw.

Advertisement

We also tested AiroPeeks capabilities as a hacking tool. We took AiroPeek on a war driving tour of the San Francisco Bay area. Using only an off-the-shelf Cisco 350 client adapter and never leaving the car, we identified several distinct wireless networks and captured enough information to authenticate, associate and join the network. Among the networks we discovered, few used WEP encryption.


WildPackets AiroPeek 1

.1″>

WildPackets AiroPeek 1.1

USABILITYA
CAPABILITYB
PERFORMANCEB
INTEROPERABILITYB
MANAGEABILITYA

WildPackets AiroPeek 1.1 provides useful information on wireless LAN security, radio signal strength and bandwidth utilization. AiroPeek lacks some of the advanced capabilities of rival NAIs Sniffer Wireless, but AiroPeek also costs about $8,000 less.

SHORT-TERM BUSINESS IMPACT // AiroPeek 1.1s most immediate impact will be in site surveys.

LONG-TERM BUSINESS IMPACT // AiroPeek 1.1 can be used as an intrusion detection tool by singling out unauthorized clients or access points, thereby improving network security.

Simple yet powerful filtering options; extremely intuitive interface; relatively inexpensive.

Integrated analysis tools are limited; cannot be used with wired networks; crashed Windows 2000 systems with VPN clients in eWeek Labs tests.

WildPackets, Inc., Walnut Creek Calif.; (800) 466-2447; www.wildpackets.com

Andrew Garcia

Andrew Garcia

Content Writer

Andrew cut his teeth as a systems administrator at the University of California, learning the ins and outs of server migration, Windows desktop management, Unix and Novell administration. After a tour of duty as a team leader for PC Magazine's Labs, Andrew turned to system integration - providing network, server, and desktop consulting services for small businesses throughout the Bay Area. With eWEEK Labs since 2003, Andrew concentrates on wireless networking technologies while moonlighting with Microsoft Windows, mobile devices and management, and unified communications. He produces product reviews, technology analysis and opinion pieces for eWEEK.com, eWEEK magazine, and the Labs' Release Notes blog. Follow Andrew on Twitter at andrewrgarcia, or reach him by email at agarcia@eweek.com.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。