WIFI Guidance
WIFI access points, aka WIFI APs or WAPs, are ubiquitous in modern offices. As such, its absolutely essential to keep your WIFI APs secure.
General Setup
When setting up WIFI, you should provide the strictest policy possible for devices.
In general, for a small number of WIFI units (up to 3), we recommend these general rules:
Put WIFI AP on a separate network BEHIND your public firewall.
Set WIFI AP to dumb mode: get DHCP addresses from the firewall.
Disable remote manangement, UPnP, and WPS
Use the strongest encryption available to your WAP: WPA3+ if possible
Use static DHCP mappings on the firewall to limit access
Enable Client Device Isolation to prevent inter-wifi infections
WiFI Hardware and Firmware
As stated before, avoid commerical products which can have end-of-life issues. Always use an open source firmware product like:
OpenWrt
FreshTomato
AsusWRT-Merlin
Contact Us
You can contact us at https://fortuitous.com/about/