MSFN Forum: security issues with wireless on a small pizza shop - MSFN Forum

Jump to content


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

security issues with wireless on a small pizza shop sorry if I posted on the wrong forum Rate Topic: -----

#1 User is offline   ceez 

  • Senior Member
  • PipPipPipPip
  • Group: Members
  • Posts: 581
  • Joined: 06-September 03

Posted 22 December 2011 - 03:50 PM

Hey everyone.

I have a friend that has a small pizza shop, he has comcast internet and wants to share it via wifi for his clients.

Security becomes a concern since his running his registers and cc equipment via the same comcast line. The only TRUE way to prevent any packet sniffing on his comcast is to order a 2nd line or a DSL line that runs separate from his comcast.

I thought of segmenting his network via a VLAN so register/cc traffic is separate from free wifi.

Do any of you have any options or expereince with this?

Thanks,

ceez


#2 User is offline   tain 

  • Cyber Ops
  • Group: Super Moderator
  • Posts: 3,557
  • Joined: 24-September 05
  • OS:none specified
  • Country: Country Flag

Posted 22 December 2011 - 04:51 PM

Sounds like you've got the right idea about threats and mitigation. It somewhat depends on what hotspot solution he will use as some may already have segregation features or may not work with certain network configs.

#3 User is offline   ceez 

  • Senior Member
  • PipPipPipPip
  • Group: Members
  • Posts: 581
  • Joined: 06-September 03

Posted 23 December 2011 - 10:04 AM

Tain what do you mean by hotspot solution? Are you talking about a wifi router or ap OR actually some device that's called a hotspot that provides additional security for environments like these?

my idea is as follows

cloud - cable modem - linksys wifi router with 2 vlans

vlan1 - clients ip: 192.168.x.x dynamic ip
vlan2 - store ip: 10.201.x.x. each store device with static ip.

#4 User is offline   tain 

  • Cyber Ops
  • Group: Super Moderator
  • Posts: 3,557
  • Joined: 24-September 05
  • OS:none specified
  • Country: Country Flag

Posted 28 December 2011 - 03:23 PM

Not to be smart about it, just for clarification:
https://secure.wikim.../Captive_portal
https://secure.wikim...pot_%28Wi-Fi%29

#5 User is offline   IcemanND 

  • MSFN Junkie
  • Group: Super Moderator
  • Posts: 3,266
  • Joined: 24-September 03
  • OS:Windows 7 x64
  • Country: Country Flag

Posted 28 December 2011 - 08:17 PM

You should be able to get a second IP from Comcast, and likely a new modem and run two networks on the same incoming line.

Whatever solution you chose be sure that it meets the PCI DSS requirements.

It also depends upon what equipment they are using and how it handles CC data.

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users



All trademarks mentioned on this page are the property of their respective owners
Copyright © 2001 - 2013 msfn.org
Privacy Policy