WEP is dead ?

Jean Tourrilhes jt at bougret.hpl.hp.com
Tue Aug 7 04:19:09 EST 2001


	WEP is not going too well lately :
		http://www.eetimes.com/story/OEG20010803S0082
		http://www.eyetap.org/~rguerra/toronto2001/rc4_ksaproc.pdf

	This attack is on the key schedule of RC4, so pretty close to
the core of the encryption mechanism.
	Note that 802.1x still use WEP for the encryption (it just use
dynamic key instead of static key), so won't fix this problem. And
Radius/LEAP is only an authentication, not encryption.
	IPsec anyone ?

	Jean




More information about the wireless mailing list