Wireless Security Standards
The University of Connecticut has a great wireless security standards worksheet here.
It includes requirements for large deployments and small/individual deployments as well as requirements that are common for all deployments.
Here’s an excerpt:
Common Requirements
Please review the University Wireless Policy for policy related information.
Minimum Technical Requirements
- Locate APs on the interior of buildings instead of near exterior walls and windows as appropriate.
- Place APs in secured areas to prevent unauthorized physical access and user manipulation.
- Change the default service set Identifier (SSID).
- Ensure that AP channel selection utilizes the maximum amount of non overlapping channels for the given spectrum.
- Use WPA or greater encryption.
- APs shall not be plugged into network hubs.
- Ensure that all APs have strong administrative passwords.
- Use SNMPv3 and/or SSL/TLS for Web-based management of APs.
- Access points cannot interfere with any part of the central University wireless network
- When disposing of access points that will no longer be used, clear access point configuration to prevent disclosure of network configuration, keys, passwords, etc.
Here’s an archived copy of the standard: Wireless Security Standards
Great info! Check it out!