May 07, 2004

Wi-Fi security standard to require new hardware

802.11i uses AES encryption

In June the IEEE is expected to finally ratify the 802.11i security standard that uses for the first time AES (Advanced Encryption Standard) technology, a powerful 128-bit encryption technology.

While AES, a standard currently approved for government use, FIPS 140-2, (Federal Information Processing) will give the enterprise the kind of strong encryption and sophisticated ciphers it has been asking for, it will also require new access cards and in many cases new APs (access points), according to Frank Hanzlik, managing director of the Wi-Fi Alliance.

Current processors in Wi-Fi cards and in many APs are not powerful enough to encrypt and decrypt 128-bit ciphers.

"Because WPA2 uses AES at its core, it requires an upgrade to support the co-processing needed," Hanzlik said.

WPA2 is the name the Wi-Fi Alliance has chosen to identify IEEE 802.11i standard.

A spokesperson for Cisco, one of the largest providers of enterprise APs, said AES is supported in hardware on the IEEE 802.11g versions of AP models 1100, 1200, and the newly announced 1300 outdoor AP/bridge. However, a software upgrade for those devices will be required and will be available free immediately after ratification by the IEEE of the 802.11i standard. Software upgrades will also be available for 802.11a, b and g card-bus and NIC cards.

Karen Pearson, principal marketing manger for wireless products at Intermec Technology, said current WA 21 and WA 22 access points with dual b/g radios will need to be upgraded. A radio module that has the AES encryption chip on it will be available in the late second quarter. In September a software upgrade that is also required will be available.

Ed Casas, chief architect at Vivato, said the current base station, the Vivato Wi-Fi Switch, has an AES encryption co-processor built in. However, the software for AES is not available and there is no time commitment from the company when it will be available. The next generation product, the VP 2200 base station, will be both 802.11b/g-compatible and will have both hardware and software compatibility with AES.

An Intel spokesperson said its current Centrino processors are compatible with AES. However, AES does require a software upgrade that will be available in the second half of 2004. Also, only Intel dual APs, 802.11/bg will support AES.

The IEEE is also expected to ratify, at the earliest the end of this year, a QoS spec, IEEE 802.11e.

The spec will have two components, WME (Wi-Fi Multimedia Extensions), which can be used by developers to assign priority to packets.

The second piece of the spec is WSM, (Wi-Fi Scheduled MultiMedia), and it will control resource management for bandwidth.

On the business side QoS will be mainly targeted in voice over Wi-Fi applications on VoIP (voice over IP) devices, according to Hanzlik.

"Eventually it will manage cell phones that include Wi-Fi and switch between networks as appropriate," Hanzlik said.

On the consumer side, QoS services will be required as consumer electronics vendors put Wi-Fi into TVs, DVD players, and home entertainment systems.

"You need to be able to manage bandwidth and prioritize the packets if you're sending a video image from your PC to your television," said Hanzlik.

Seeking to expedite the QoS standard, as it did with the 802.11i security standard when it took the stable portions of the specification to create WPA, the Wi-Fi Alliance will start a certification program for the WME component of the 802.11e spec in September.

Read more about computer hardware in InfoWorld's Hardware Channel.

Ephraim Schwartz is an editor at large at InfoWorld. He also writes the Reality Check blog.
Close

On Twitter now

Hardware

Powered by Twitter

On Twitter now

additional resources
White Paper - How to Improve Delivery of Advanced Web Applications

White Paper

Virtual Workforce: The Key to Expanding The Business While Cutting Costs

Get the independent advice and expertise you need to support a virtual workforce.

Go inside:
The three-step approach to making a virtual workforce a reality.
The four flavors of client virtualization technologies.
The three key initiatives that solve IT challenges.
Download now »
White Paper: Successfully Secure Your Wireless LAN With Wi-Fi firewalls.

White Paper

Addressing Linux Threats Leveraging Fewer Resources

The increase in Linux popularity has increased the frequency and sophistication of malware attacks. Read this 2 page white paper now to learn how you can protect your Linux environment with real-time protection that is certified by all major Linux vendors.

Download now »
White Paper - The 2009 Handbook of Application Delivery

White Paper

The 2009 Handbook of Application Delivery

Ensuring acceptable application delivery will become even more difficult over the next few years. As a result, IT organizations need to ensure that the approach that they take to resolving the current application delivery challenges can scale to support the emerging challenges. This handbook elaborates on the key tasks associated with planning, optimization, management and control and provides decision criteria to help IT organizations choose appropriate solutions.

Download now »
White Paper - Is Your Backup System Outdated?

White Paper

Mid-range Storage Considerations

A common misconception is that mid-range storage requirements are dramatically different than that of a larger enterprise. Mid-range storage users may require less capacity, but they have similar functionality and management requirements. This ESG paper examines mid-range storage needs and reviews a new solution that adjusts size while retaining value, performance and functionality.

Download now »

Today's Headlines: First Look Newsletter

Find out what will be news for the day, with our first-thing-in-the-morning briefing.

©1994-2010 Infoworld, Inc.