Your Universal Remote Control Center
RemoteCentral.com
Philips Pronto Professional Forum - View Post
Previous section Next section Up level
Up level
The following page was printed from RemoteCentral.com:

Login:
Pass:
 
 

Topic:
Security issue
This thread has 8 replies. Displaying all posts.
Post 1 made on Sunday July 15, 2007 at 01:47
sirshambling
Long Time Member
Joined:
Posts:
April 2007
17
I understand from Lyndel in another thread the reasons why Philips haven't implemented WPA in the latest revisions to the TSU9600 but I'm still disappointed and remain concerned about the security of my network.

I've downgraded to WEP and added MAC address filtering but these are very flimsy security measures.

I'd be grateful to hear of any tips for improving the security of my PC and data while running my TSU9600 and RFX9600.

TIA. John.
Post 2 made on Sunday July 15, 2007 at 10:01
Wim J
Long Time Member
Joined:
Posts:
September 2002
33
You might try to add an extra acces point which only does WEP and has only limited acces to other PC's in the network. You could keep WPA for purposes that need more security. I can not help on how to configure this setup, but probably others can,...

WJ
OP | Post 3 made on Sunday July 15, 2007 at 12:00
sirshambling
Long Time Member
Joined:
Posts:
April 2007
17
Thanks Wim - I'd be glad to try this if anybody can help with the configuration....
Post 4 made on Sunday July 15, 2007 at 19:07
sbwright
Long Time Member
Joined:
Posts:
March 2007
62
My opinion others here may not necessarily agree,

I believe the best way to set this up if you must use the networking option is to isolate the equipment to its own network segment, with NO/NONE/ZERO access to your pc. Especially if you have any banking or personal information on the machine. When its time to upgrade firmware temporarily connect the pc.

WEP and MAC address filtering have been cracked and spoofed.

Philips needs to resolve the WPA issues they have, even my pocket pc does WPA and its 1/5 the size of this remote.
Brian
Pronto TSU9600, RFX9600, (RFX9400 - retired), SlimPronto
Post 5 made on Sunday July 15, 2007 at 21:21
Peter Dewildt
Loyal Member
Joined:
Posts:
July 2001
6,307
The problems that Philips identified with WPA were
- authentification can take a long time and it was undesirable to have users wait 30 seconds or more to get commands transmitted to the extender.
- the extra data transmitted with WPA was causing the battery to drain quicker
Peter
Pronto 1000 (retired), Pronto TSU7000, RFX6000 (retired)
Pronto 2xTSU9600, RFX9400
Post 6 made on Sunday July 15, 2007 at 21:34
gbk33
Long Time Member
Joined:
Posts:
June 2005
157
it is something that needs addressed and fixed....IMO
May the pronto be with you
OP | Post 7 made on Monday July 16, 2007 at 02:01
sirshambling
Long Time Member
Joined:
Posts:
April 2007
17
On July 15, 2007 at 19:07, sbwright said...
I believe the best way to set this up if you must use
the networking option is to isolate the equipment to its
own network segment, with NO/NONE/ZERO access to your
pc. Especially if you have any banking or personal information
on the machine. When its time to upgrade firmware temporarily
connect the pc.

Can you tell me please how to set that up. What is a "network segment"?
Post 8 made on Monday July 16, 2007 at 09:42
dvwebster
Long Time Member
Joined:
Posts:
August 2004
71
You could also consider using an Access Point that has two virtual wireless networks. One can be set for WEP suitable for the Pronto components, and the second with WPA for the wireless PCs. Some WAPs do exist that have this feature and with isolation between the network segments.

A dual virtual wireless network avoids the problems of having to setup two or more seperate WAPs with the attendant problems of RF channels overlaps etc.
Post 9 made on Monday July 16, 2007 at 09:44
dvwebster
Long Time Member
Joined:
Posts:
August 2004
71
You could also consider using an Access Point that has two virtual wireless networks. One can be set for WEP suitable for the Pronto components, and the second with WPA for the wireless PCs. Some WAPs do exist that have this feature and with isolation between the network segments.

A dual virtual wireless network avoids the problems of having to setup two or more seperate WAPs with the attendant problems of RF channels overlaps etc.

Still not a perfect solution since the WAP security is invested in a single device that might be possible to compromise.


Jump to


Protected Feature Before you can reply to a message...
You must first register for a Remote Central user account - it's fast and free! Or, if you already have an account, please login now.

Please read the following: Unsolicited commercial advertisements are absolutely not permitted on this forum. Other private buy & sell messages should be posted to our Marketplace. For information on how to advertise your service or product click here. Remote Central reserves the right to remove or modify any post that is deemed inappropriate.

Hosting Services by ipHouse