It should come as no real surprise: MS-CHAPv2 is broken. It's an ancient scheme. If you were paying attention, you would have migrated your VPNs and Wireless networks away from it years ago anyway.Here's a great break down of what this means to your wireless networks.
An even simpler one is to just note that these combinations are still fine:
- IPSEC and OpenVPNs are fine.
- WPA2 Enterprise wireless with PEAP is fine.
- WPA2 Non-Enterprise (i.e. home) wireless is fine (from this).
Not to this post, but something you may find interesting to comment on:
ReplyDeletehttp://bit.ly/N6wLIt
Amazon user orders a flat-panel TV from a third-party vendor. Gets a Sig Sauer 716 assault rifle instead.
Cheers
Colin
more posts like this, please!
ReplyDeleteUK Visitor: But of course ... :)
ReplyDeleteColin: We weren't initially going to cover it, but the shipping/logistics and the ethics of returning the item are interesting and not being covered elsewhere that we see, so here you go:
ReplyDeletehttp://securology.blogspot.com/2012/08/order-tv-receive-sig-rifle-instead.html