As more and more businesses start using mobile broadband network, IT managers are also beginning to feel very concerned about the security issues. To protect data during transmission security can only be regarded as part of mobile security policies, enterprises need to protect the good equipment and the safety of stored data, but start from the secure transmission channel is a good start. Wireless security on the good news is that mobile broadband network now has enhanced security features. The latest 3G technology (including WiMax, etc.) contain a very strong encryption. AT & T and T-Mobile's Kasumi using 128-bit encryption algorithm to provide sub-high-speed access, while Sprint and Verizon to provide CDMA2000 provided by the Advanced Encryption Standard 128-bit encryption, WiMax is also used by AES.
Encryption can not protect the safety of
The bad news is, AES serious shortcomings: First of all, AES activation is operator selectable functions. AT & T said that they always run the Kasumi encryption, but Verizon does not disclose whether its encryption is optional. In addition, the operators, even if you use the encryption feature, your users may roam the network without encryption.
Some network operators to provide Virtual Private Network (VPN) or dedicated lines to deal with non-encrypted data, so that when you have a large number of operators in the back-end data exchange, a lot of protection, but protection may be very complicated. Even if your wireless connection is secure, the user may access through other networks (not protected Wi-Fi hot spots, etc.). Wi-Fi feature is the notebook and smart phone features common.
Configuration
Addition to connection security to protect enterprise businesses may also want to control the behavior of mobile devices from other suppliers Trellis and the configuration management system so that possible. These products can be controlled settings, including the implementation of the Enterprise VPN restrictions to prevent the network bridge (3G to the corporate network), as well as to ensure that the appropriate proxy configuration.
The use of mobile devices for mobile virtual private network can remain disconnected when the conversation and the provision of different network types (such as Wi-Fi to 3G) for seamless roaming, and data traffic can be optimized. To deal with the issue of disconnected and IP address change is a major challenge IPsec VPN. In addition to connections, NetMotion Wireless's Mobility XE's new features focus on strengthening policy management, endpoint control, network access control and dual-factor authentication support. If you need a platform for the development of hand-held applications, consider the development of flower essence has a complete mobile middleware, which will let you use the same program code to configure multiple mobile platforms. These systems have a strong management capabilities and security features (such as communication encryption, storage encryption, access policies, as well as lost or stolen equipment to disable the function), these systems include Antenna Software, Dexterra, MobileAware, Sybase and so on.
Summary
Alcatel Lucent's mobile security is the security features will be directly embedded modem card, the card actually as a VPN client and the client implementation of policy management and the need to Alcatel Lucent VPN concentrator. Disconnect the power cord even if the notebook, the card can still operate using the battery, and can receive software patches, until the notebook once again after the installation of electricity to the notebook. When the adoption of Wi-Fi or Ethernet connection, data packets are still in the cards have been dealt with to implement the VPN functionality. The card also enables two-factor smart card authentication function.
Mobile broadband network now there are many built-in enhanced security features, but most companies should also ensure that safety equipment, as well as communication equipment, security, Fortunately, now there are many practical solutions to choose from.