[nsp] Cisco Aironet

Bradley Dunn bradley at dunn.org
Sat Nov 15 14:32:48 EST 2003


Rainer Borromeo wrote:
> How secure is Aironet using LEAP?

It's more secure than no security or static WEP, but it's vulnerable to 
dictionary attacks. See:
http://home.jwu.edu/jwright/presentations/asleap-defcon.pdf

Cisco will tell you the solution is a "strong password policy", but the 
real solution is to use a better EAP type.

Bradley



More information about the cisco-nsp mailing list