# Wireless security

**How do you secure the company wireless network?**

A wireless network reaches further than your walls. Anyone within range can see it. Securing it rests on three points: current encryption, a separate guest network, and access that does not rest on a shared password.

Use a current encryption method. Old methods can be broken with freely available tools. A wireless network without encryption is an open network, whether or not the name of the network is hidden.

Separate guests from the company network. A guest needs the internet, they do not need access to your servers or printers. The same applies to devices such as cameras, point of sale systems or heating controls. Those belong in a network of their own, because they rarely receive updates.

A shared wireless password that everyone knows and that has been in place for years is no longer access protection in practice. Departed employees and former providers still know it. For the company network, signing in with a personal account is the better route.

## Related terms
- [Network segmentation](https://vetosec.at/en/it-security/netzwerksegmentierung/)
- [Man in the middle](https://vetosec.at/en/it-security/man-in-the-middle/)
- [Firewall](https://vetosec.at/en/it-security/firewall/)
- [Hardening](https://vetosec.at/en/it-security/haertung/)

## Source
https://vetosec.at/en/it-security/wlan-sicherheit/ (vetosec, schutz)
