Live data from Hacker News

Open Wireless Movement

openwireless.org

31–40 of 53 posts

Re: Open Wireless Movement

#31

Until somebody uses your open wireless for child porn and the cops come asking you questions.

An interesting counterpoint from Bruce Schneier: https://www.schneier.com/blog/archives/2008/01/my_open_wirel...

Where does he live? It makes a huge difference if he lives in a farm house in the middle of a field or if he lives in an apartment building in the middle of a a large city. If you live in such a way that the only way for me to see your network is to sit in my car in your driveway, then perhaps. However, from the comfort of my sofa in my living room i can 'see' at about a dozen different wifi networks (and by extension at least a dozen people can see my wifi network from their sofa).

That kind of changes the math a bit. I don't want a dozen people torrenting off my network, not because I'm afraid of getting in trouble, but because it degrades my ability to use my network.

Re: Open Wireless Movement

#32

Earlier quoted context omitted.

And what if you need to login to a site that isn't SSL-secured? There's nothing the end user (you) can do about that.

You use a VPN to tunnel to a trusted server and have it initiate the cleartext connection to the site, keeping the traffic between you and that server encrypted.

Not easy as in everyone has access to a __trusted__ VPN tunnel server.

Re: Open Wireless Movement

#33
post #20

Earlier quoted context omitted.

Using an open network without encryption allows a passerby to listen in to all of your traffic. Unfortunately not all websites are using SSL yet.

If attacker knows network pre-shared key, and intercepted handshake, they can decrypt your traffic.

I guess I should have read the comments on this post: http://steve.grc.com/2010/10/28/instant-hotspot-protection-f...

Re: Open Wireless Movement

#34

  "Someone's been committing crimes from your network."
  "It must be someone using my open wireless point."
  "Sorry to bother you sir, have a nice day."
I can't see it happening that way somehow.

Re: Open Wireless Movement

#35
post #29

Earlier quoted context omitted.

An interesting counterpoint from Bruce Schneier: https://www.schneier.com/blog/archives/2008/01/my_open_wirel...

And yes, if someone did commit a crime using my network the police might visit, but what better defense is there than the fact that I have an open wireless network? If I enabled wireless security on my network and someone hacked it, I would have a far harder time proving my innocence. In Germany this defense wouldn't really help you much. You're (partially) responsible for the crimes that are committed over your unse…

No, Mitstörerhaftung is a purely civil concept that does not -- and could never -- extend to criminal law.

Re: Open Wireless Movement

#36
Actually IEEE 802.11u implements something like EAP-UNAUTH-TLS where the client auths the server but the server does not auths the client.

After that, the best would be to push the whole traffic throug tor (Or even to run a tor exit node, if nobody can say from which side of the network the requezst comes from ...).

Re: Open Wireless Movement

#37
post #17

Difference from FON? [1] [1] http://en.wikipedia.org/wiki/FON

Does anyone here from the USA use FON? I've only used as an "alien" but I was able to purchase internet on demand from my apartment while living in Spain for a few months. Getting access from a teleco required a bank account or spanish ID number that we were unable to provide and FON ended up being cheaper anyways.

Re: Open Wireless Movement

#38
post #34

"Someone's been committing crimes from your network." "It must be someone using my open wireless point." "Sorry to bother you sir, have a nice day." I can't see it happening that way somehow.

I'll go ahead and say it won't happen that way. Whether they can or not, they will say something to the effect of "It happened on your network; you're responsible unless you can prove it wasn't you."

Re: Open Wireless Movement

#39
post #34

"Someone's been committing crimes from your network." "It must be someone using my open wireless point." "Sorry to bother you sir, have a nice day." I can't see it happening that way somehow.

[deleted]

Re: Open Wireless Movement

#40

Actually IEEE 802.11u implements something like EAP-UNAUTH-TLS where the client auths the server but the server does not auths the client. After that, the best would be to push the whole traffic throug tor (Or even to run a tor exit node, if nobody can say from which side of the network the requezst comes from ...).

I've always thought it would be a good idea to just route all traffic through tor with an insecure ssid (and a separate one for yourself. It would take care of security concerns, or getting blamed for torrenting.
Post reply on HN