Home > Ask the Mobile Computing Experts > Wireless Networking with Lisa Phifer Questions & Answers > Implementing WPA over WDS links
Ask The Mobile Computing Expert: Questions & Answers
EMAIL THIS

Implementing WPA over WDS links

Lisa Phifer EXPERT RESPONSE FROM: Lisa Phifer

Pose a Question
Other Mobile Computing Categories
Meet all Mobile Computing Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 14 March 2005
I have been looking into open source solutions to implementing WPA over WDS links, and have found at this point it doesn't work because of dynamic key exchanges. Some vendors state that they have it working, but it will be more or less a proprietary solution and will likely have interoperability issues. Are you aware of any work on this issue?

>
Encryption can be used with 802.11 Wireless Distribution System (WDS) links between bridges or repeaters, but only with static keys configured into the APs at both ends of the WDS link. In practical terms, this means that WDS can only be used with Wired Equivalent Privacy (WEP), because WEP allows direct configuration of static keys. Wi-Fi Protected Access (WPA) did away with static encryption keys, using a 4-way key handshake to derive dynamic encryption keys based either on a Preshared Secret Key (WPA-PSK) or a master key delivered via 802.1X.

WPA was based on a draft version of the 802.11i standard. It defined the 4-way key handshake for Infrastructure mode (stations associated with APs) but not for Ad Hoc mode (station associated with peer station). WPA2, based on the final 802.11i standard, covers how key handshake works in Ad Hoc mode, letting peers derive dynamic encryption keys. I have not heard anything specific about WDS and WPA2, but it seems conceptually possible to apply the 802.11i four-way key handshake defined for Ad Hoc mode to APs connected by WDS.

IEEE 802.11 Task Group S is now drafting a new standard to define an 802.11 Extended Service Set (ESS) Mesh, interconnected by an 802.11 Wireless Distribution System. This standard will probably apply 802.11i security enhancements (WPA2) to mesh networks and may thus become the standard way of using WPA/WPA2 with WDS.

In the meantime, it seems that some vendors DO support WPA in their current WDS implementations. Here are a few products that claim to support WDS with WPA: Apple Airport 4.1, the latest Sveasoft Alchemy (custom firmware for Broadcom b/g-based APs), Belkin 802.11g Wireless Network Access Point 4.03.03, 3COM OfficeConnect Wireless 108 Mbps 11g PoE Access Point, and Corinex Wireless to Powerline Router G. As you point out, these vendor extensions are unlikely to permit WDS bridging between unlike products, although this should not inhibit station-AP multi-vendor interoperability.


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Wireless Networking with Lisa Phifer
Wireless signal penetration
Wireless bridges
Wireless LAN QoS
Advice for setting up a WLAN
How can QoS be maintained on 802.11?
I'm about to embark on a CWNA course, and I'm wondering how in-depth the RF math is?
How many computers can each access point support?
What's the expected range on a pair of Belkin 54G routers in wireless bridge mode?
What would be the best security design for a campus environment, EAP or LEAP?
What sort of range does a typical 802.11g 2.4GHz router have?

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Mobile Device Management and Synchronization
HomeNewsTopicsITKnowledge ExchangeTipsMultimediaWhite PapersProducts
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts