Now that more and more people buy wifi-dsl-routes the security risks for the users grow.
Last month I have read an article at an italian magazine about this. The giornalist that wrote it had made a test at Milano in Italy to see if the Wifi-lans of the users are protected.
The results were that over 1000 wifi-lans they tried to get access at, they succeded on more than 85%, which is pretty impressive. A lot of people put wifi-dsl-routers but don't really have a clue of the risks of the wireless networks.
The great difference of a cable-Lan and a Wifi-Lan is that on a cable-lan someone can get access by fisically connecting to the network with a cable and for doing this must have access at your enviroment. At the other side on a Wifi-Lan someone can get access on your network and at your internet connection by distance; and this can be very risky!!!!
How can we protect our wifi-Lans?
1. The first thing to do is to change the default username and password at the router. A stronge password is required. By this we can be sure that none will have access on our routers settings.
2. Make another password, that will be needed by every computer or machine, that needs to get access at the network. This password must be even stronger than the first one. Prefer a
WPA (or better WPA2) key and not WEP, it is much safer. Better use a 128bit encryption which means that your password have to be 13 caracters long. Be sure not to use yours or your family members names.( these will be the first that people who know you will use to get access)
3. On
Comodo Personal Firewall instead of adding your entire network range as a trusted zone
add only the IP adress of your wifi-router as trusted. By this, even if someone succedds in getting in your wifi-network, he won't have access at your computer and your personal documents.

4. If you want to have access on other computers or machines at your network give them a permanent
(static) IP adress (this can be done by the routers lan settings) and add these IP adresses as trusted in your CPF.
ps. It can be a little annoying doing all these, but remember it has to be done only once and it will maximize your protection.

by pandlouk (L)
edit: 04/02/07 (d/m/y)
It is wise to restrict also the range of the computers that you want to connect at the same time at your lan. This one depends from the "subnet mask" of your network (LAN settings).
If you want to connect:
1. 1 pc change it to 255.255.255.252
2. 5 pcs change it to 255.255.255.248
3. 13 pcs change it to 255.255.255.240
4. 29 pcs change it to 255.255.255.224
5. 61 pcs change it to 255.255.255.192
6. 125 pcs change it to 255.255.255.128
7. 253 pcs leave it as it is 255.255.255.0