<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" 
      xmlns:thr="http://purl.org/syndication/thread/1.0">
  <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html" />
  <link rel="self" type="application/atom+xml" href="http://consumerist.com/atom.xml" />
  <id>tag:consumerist.com,2010:/1/tag:64.14.177.195,2008://1.5057854-</id>
  <updated>2010-01-24T14:39:10Z</updated>
  <title>Comments for The Idiot-Proof Way To Securely Use Public Wi-Fi</title>
  <subtitle>Shoppers bite back.</subtitle>
  <generator uri="http://www.sixapart.com/movabletype/">Movable Type 4.32-en</generator>
  <entry>
    <id>tag:64.14.177.195,2008://1.5057854</id>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html" />
    <link rel="service.edit" type="application/atom+xml" href="http://consumerist.com/cgi-bin/mt/mt-atom.cgi/weblog/blog_id=1/entry_id=5057854" title="The Idiot-Proof Way To Securely Use Public Wi-Fi" />
    <published>2008-10-06T22:30:09Z</published>
    <updated>2008-10-06T23:57:50Z</updated>
    <title>The Idiot-Proof Way To Securely Use Public Wi-Fi</title>
    <summary>--&gt;We talk a lot on this blog about personal data and privacy, but not so much about how to secure that data on your own computer. That&apos;s because a.) we&apos;re not Lifehacker and b.) the solutions frequently bloat into crazy, jargon-filled recipes that scare away the non-IT crowd. Not this time! For all you novices, here is a single idea you should consider that will help keep your personal data personal, and make your identity that much harder to steal.</summary>
    <author>
      <name>Chris Walters</name>
      
    </author>
    
    <category term="Features" />
    
    <category term="Horror Stories" />
    
    <category term="Other How To" />
    
    <category term="Recalls and Safety" />
    
    <content type="html" xml:lang="en" xml:base="http://consumerist.com/">
      <![CDATA[<p><!--<img src="http://consumerist.com/images/31/2008/10/100608-002-armorcoffee158.jpg" height="158" width="158" class="left" />--><iframe src="http://digg.com/api/diggthis.php?u=http://digg.com/security/The_Idiot_Proof_Way_To_Securely_Use_Public_Wi_Fi" align="right" frameborder="0" height="82" scrolling="no" width="55"></iframe>We talk a lot on this blog about personal data and privacy, but not so much about how to secure that data on your own computer. That's because a.) we're not Lifehacker and b.) the solutions frequently bloat into crazy, jargon-filled recipes that scare away the non-IT crowd. Not this time! For all you novices, here is a single idea you should consider that will help keep your personal data personal, and make your identity that much harder to steal.</p>
<h2>Install a VPN program and run it every time you go online using a public Wi-Fi hotspot.</h2>
<p>Using a public Wi-Fi spot without a VPN is like shouting  everything across the room in plain English&mdash;anyone who wants to listen in, can. Using a VPN is more like shouting in a made-up language that only <a href="http://en.wikipedia.org/wiki/Idioglossia">you and your twin sibling</a> understand. A VPN will encrypt anything you send from your laptop to the Wi-Fi router, so that nobody else in the coffee shop, student center, or hotel can see what you're doing.</p>
<p>If you work for a large company, odds are your IT department has already got you using a VPN when you're traveling or working away from the office. If you're everyone else&mdash;a freelancer, a student, a small business owner with one or two computers and no real "back-end" system&mdash;then many of those VPN solutions are out of your reach. Either they're too complicated to set up without computer skillz or they're too expensive. </p>
<p>Luckily, there are cheap VPN programs you can install on your laptop that are more or less self-contained: you install the app, then launch it when you log on to a Wi-Fi network, and everything you do online from that point forward will be encrypted. There's also a hardware-based solution&mdash;a USB drive that you can plug into any computer for a quick VPN environment.</p>
<p>A couple of things to note:</p>
<p><ol><li>When the website you're on uses https, your data is already encrypted. For some Google-based services (like Gmail and Google Docs), you'll be using https automatically or you can add the "s" yourself to force the encryption. But not every site offers this extra security.</li><li>These VPN programs are not the end-all in security solutions. If you're <i>really</i> serious about security, don't get your advice from this blog. Find a skilled computer security technician to help you set up an awesome home-based VPN solution (where you route all your laptop traffic through a home network remotely), or teach yourself how to do it with freeware and your router.</li></ol></p>
<p>So with those caveats, here are some options you can consider. The first two programs listed below install the same as any other app, but I haven't tested the other three. If you've tried any of these and can share an opinion, please join in the comments below.</p>
<p><b><a href="http://www.anchorfree.com/downloads/hotspot-shield/">AnchorFree's Hotspot Shield</a></b><br />
Free, but ad-supported. While browsing, you'll see ads appear occasionally at the top of the browser window. It's great if you infrequently need it, but annoying if you find yourself in a Starbucks once a week.</p>
<p><b><a href="http://witopia.net/personalmore.html">Witopia's PersonalVPN</a></b><br />
$40 per year</p>
<p><b><a href="http://www.hotspotvpn.com">HotSpotVPN</a></b><br />
$9 per month (listed as a temporary price reduction as of October 2008)</p>
<p><b><a href="http://www.iopus.com/ipig/download/">iPig</a></b><br />
Free with a 10MB cap / $30 for 30GB of data transfer</p>
<p><b><a href="http://www.publicvpn.com/index.php">PublicVPN</a></b><br />
$70 per year, or $7 per month</p>
<p>About that hardware solution: <a href="https://www.ironkey.com/personal"><b>IronKey</b></a> is a USB flash drive that offers a few extra features you can't get with the software above. It encrypts any files you store on it, and it comes with its own VPN software that runs automatically when you plug it into a Windows PC. It comes with the Firefox  browser included, so you can surf the web <i>through</i> the IronKey no matter what PC you're using. It costs $80 for a 1 GB drive with a 1-year VPN subscription.</p>
<p>And finally, Consumerist reader <a href="http://consumerist.com/people/ein2015/">Ein2015</a>, who provided an invaluable service by vetting this article before I posted it, pointed out that there's an awesome open source VPN solution called <a href="http://en.wikipedia.org/wiki/OpenVPN">OpenVPN</a>. It's cross-platform and free, so if you're feeling techy and want to set up your own virtual private network using your home computers, you might check it out. </p>
<p><i>(Many, many thanks to Ein2015!)</i><br />
(Photo: <a href="http://www.gettyimages.com">Getty Images</a> and <a href="http://flickr.com/photos/stevecadman/188227943/">stevecadman</a>)</p>
]]>
      
    </content>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8269629</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8269629" />
    <title>Comment from xtc46 - thinksmarter on twitter on 2008-10-11</title>
    <author>
        <name>xtc46 - thinksmarter on twitter</name>
        <uri>http://think-smarter.blogspot.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://think-smarter.blogspot.com">
        <![CDATA[<p><p>VPN all you want. The fact is, if you are sitting on an open wireless network dozens of other computers are probabaly also connected and in turn connected to you unless you have your computer protected properly. When I was younger I used to sit at starbucks and pick out people whos computers I could practice "security auditing" on. VPN is a good solution, but it will only protect your data in transit. If somone decides to load a decent key logger on your system, then they have you data eitherway. My point is, no single solution will ever be enough.</p></p>]]>
    </content>
    <published>2008-10-11T08:22:13Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8269563</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8269563" />
    <title>Comment from xtc46 - thinksmarter on twitter on 2008-10-11</title>
    <author>
        <name>xtc46 - thinksmarter on twitter</name>
        <uri>http://think-smarter.blogspot.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://think-smarter.blogspot.com">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8168649" rel="nofollow">mariospants</a>: All you are doing right then is connecting to the internet. What if the guy next to you decides you look like a good mark and then drops a virus on your computer? now a week or a month down the road, you think you secure on your home network and type in your CC info, now he has it.</p></p>]]>
    </content>
    <published>2008-10-11T08:17:38Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8264424</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8264424" />
    <title>Comment from krom on 2008-10-10</title>
    <author>
        <name>krom</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Just today Lifehacker AU covered GPass, a similar free (Windows) online-security tool. Simple program, put it on your disk or thumbdrive and start the app.</p>
<p><a href="http://www.lifehacker.com.au/tips/2008/10/11/gpass_boosts_browsing_privacy_circumvents_censorship_and_filters-2.html" rel="nofollow">[www.lifehacker.com.au]</a></p>]]>
    </content>
    <published>2008-10-11T02:31:33Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8236821</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8236821" />
    <title>Comment from awdark on 2008-10-09</title>
    <author>
        <name>awdark</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>This might sound really dumb but is there a VPN server we can run on our home networks? (non wrt router or vpn server/firewall devices)</p>
<p>My router is not WRT compatible but I have pocket pcs I wouldn't mind running.  Or what about vpn or tunneling through a NAS? I have been looking at the buffalo linkstation or Mybook world edition</p>
<p>My logic is I trust my home connection and somewhat "free"</p>]]>
    </content>
    <published>2008-10-09T23:42:01Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8196550</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8196550" />
    <title>Comment from Ein2015 on 2008-10-07</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8182739" rel="nofollow">QasimPansa</a>: If you trust the 3G network then just turn off Wifi.</p>]]>
    </content>
    <published>2008-10-08T01:53:38Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8186265</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8186265" />
    <title>Comment from MexiFinn on 2008-10-07</title>
    <author>
        <name>MexiFinn</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8171817" rel="nofollow">GearheadGeek</a>:</p>
<p>Regarding VPN's, what you are describing is called split tunneling. If it's on, anything non-office related goes out through the internet UNENCRYPTED. If it's enabled, all traffic goes through the VPN tunnel.</p>
<p>In cases with the Cisco VPN, you can enable the option to Enable Local LAN access and you can then access your local printers.</p>
<p>Anyhow, This whole VPN thing is silly because you NEED something to VPN to. And, chances are if you are using work VPN and split tunneling is disabled, they are probably keeping logs of everything you access. Read the fine print of their acceptable use policy...</p>]]>
    </content>
    <published>2008-10-07T19:53:32Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8186148</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8186148" />
    <title>Comment from Ein2015 on 2008-10-07</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8181965" rel="nofollow">ugly</a>: Do you mean how to remote into a linux box?  The program you're looking for is VNC, and if you Google for it you'll see TightVNC, RealVNC, and UltraVNC.  Choose one. :)</p>]]>
    </content>
    <published>2008-10-07T19:49:39Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8182739</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8182739" />
    <title>Comment from QasimPansa on 2008-10-07</title>
    <author>
        <name>QasimPansa</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I've been using a VPN (Witopia) whenever on a network other than my home network. There are so many apps and mini-apps that connect to the Web now, I have to make sure ALL connections have a secure way to sneak past anyone on the LAN I'm on, therefore a VPN.

<p>It should be pointed out that everything discussed here is not limited to laptops, it also applies to any device you carry that connects to the Internet over WiFi. This means you, iPhone! When I get around to buying an iPhone, setting up a secure tunnel will be one of the first things I do, but I keep reading that Apple does not make it easy or seamless especially when switching between 3G and WiFi.</p>

<p>If you don't use a VPN, at least find out how your email provider supports SSL so that your emails can at least be encrypted. People treat email so lightly, but there are so very many personal details in your emails. So...down at the local coffee shop you got an email receipt from Amazon for a big-screen TV and then 5 minutes later you got an email receipt from Southwest about your vacation between December 15 and 30? If you are using email in plaintext, then great, you just told any hacker in the room that your new TV will be unprotected during that time...</p></p>]]>
    </content>
    <published>2008-10-07T12:37:22Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8182386</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8182386" />
    <title>Comment from witeowl on 2008-10-07</title>
    <author>
        <name>witeowl</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>I wasn't paying attention and read on the homepage of lifehacker. I read the second sentence and thought: wtf... yes, you <i>are</i> lifehacker!</p></p>]]>
    </content>
    <published>2008-10-07T11:13:37Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8181965</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8181965" />
    <title>Comment from ugly on 2008-10-07</title>
    <author>
        <name>ugly</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Anyone know a good VPN endpoint for Linux? Preferably something that both the WinXP Pro and Mac OS X 10.5 clients can connect to. Potentially a Linux laptop as well, but that's less likely/important right now.</p>]]>
    </content>
    <published>2008-10-07T09:55:13Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8181195</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8181195" />
    <title>Comment from MyerCarnabon on 2008-10-07</title>
    <author>
        <name>MyerCarnabon</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>or use Himachi. It's made by logmein.com and is free.

<p><a href="https://secure.logmein.com/products/hamachi/vpn.asp" rel="nofollow">https://secure.logmein.com/products/hamachi/vpn.asp</a></p>

<p>-249-</p></p>]]>
    </content>
    <published>2008-10-07T08:26:18Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8180127</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8180127" />
    <title>Comment from robertk2 on 2008-10-07</title>
    <author>
        <name>robertk2</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>University students check with their Office of Information Technology. My college has free CISCO Professional VPN for all students, faculty and staff.</p>]]>
    </content>
    <published>2008-10-07T06:52:32Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8178991</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8178991" />
    <title>Comment from OrlenaBurhans on 2008-10-07</title>
    <author>
        <name>OrlenaBurhans</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>The author of this post misunderstands the Ironkey solution.  This is NOT a hardware solution -- rather there just happens to be installed on the Ironkey drive a copy of firefox portable with a proprietary version of TOR installed.  The one difference between this and any old firefox+tor installation is that instead of using the TOR network to rerout/encrypt/anonymize, the Ironkey version uses the TOR network in addition to special Ironkey TOR servers.  </p>]]>
    </content>
    <published>2008-10-07T05:17:29Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8177334</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8177334" />
    <title>Comment from Rob Phelps on 2008-10-06</title>
    <author>
        <name>Rob Phelps</name>
        <uri>http://www.robphelps.net</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.robphelps.net">
        <![CDATA[<p>LogMeIn does, indeed effing rock.</p>]]>
    </content>
    <published>2008-10-07T03:40:22Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8177189</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8177189" />
    <title>Comment from ShravastiBabararacucudada on 2008-10-06</title>
    <author>
        <name>ShravastiBabararacucudada</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I'm on wifi WAP connection at home. Is my internet browsing readable (plaintext) to a MITM?</p>]]>
    </content>
    <published>2008-10-07T03:32:37Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8177002</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8177002" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8176662" rel="nofollow">squishyalt</a>: I once tried LogMeIn years ago... it was pretty easy.</p>]]>
    </content>
    <published>2008-10-07T03:22:52Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8176693</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8176693" />
    <title>Comment from JoannaFlea on 2008-10-06</title>
    <author>
        <name>JoannaFlea</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Curious as to how this is done - checking up on the spoofer, that is. I see fake "FREEAirportWiFi" type computer ids in my wireless networks almost 1/3 of the time I'm at the airport (which is every week.) It makes me so mad but I've never known how to find out who it is. </p>]]>
    </content>
    <published>2008-10-07T03:09:27Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8176662</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8176662" />
    <title>Comment from squishyalt on 2008-10-06</title>
    <author>
        <name>squishyalt</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Just use the FREE version of LogMein (www.logmein.com) and log into your home PC from any hotspot and surf from home.</p>
<p>LogMeIn FREE is, well, FREE and enrypted so any remote surfing you do is much safer than the open air at your favorite  hotspot.</p>
<p>Did I mention that it was FREE?</p>]]>
    </content>
    <published>2008-10-07T03:08:03Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8176540</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8176540" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8176355" rel="nofollow">snowburnt</a>: That doesn't even matter.  It's not hard to find out what the WEP key is through sniffing.</p>]]>
    </content>
    <published>2008-10-07T03:02:24Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8176510</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8176510" />
    <title>Comment from kerpalguy on 2008-10-06</title>
    <author>
        <name>kerpalguy</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I am an avid user of swissvpn.net - at home as well as abroad, that for over a year now. The more secure, the better.</p>]]>
    </content>
    <published>2008-10-07T03:01:03Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8176355</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8176355" />
    <title>Comment from snowburnt on 2008-10-06</title>
    <author>
        <name>snowburnt</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8172483" rel="nofollow">emilayohead</a>: Problem is that everyone knows what the key is.  It's encrypted for most people, but for anyone staying at the hotel they'll know how to decrypt it.</p>]]>
    </content>
    <published>2008-10-07T02:53:33Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8176140</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8176140" />
    <title>Comment from snowburnt on 2008-10-06</title>
    <author>
        <name>snowburnt</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8173183" rel="nofollow">lannister80</a>:</p>
<p>L2TP is pretty tricky to get working unless you have public IPs on both sides.  the reality probably is that the helpdesk people didn't want to deal with it.</p>]]>
    </content>
    <published>2008-10-07T02:44:21Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8174071</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8174071" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8171256" rel="nofollow">corsec67</a>: That is indeed another option.  I usually just use a text-based browser over the terminal (such as elinks).  :P</p>
<p>Of course then you have to make sure it's not a publicly-accessible proxy or then you might have more problems... :)</p>]]>
    </content>
    <published>2008-10-07T01:37:32Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173999</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173999" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8173183" rel="nofollow">lannister80</a>: My university barely understands that there's more out there than Windows and Microsoft Office.  It's probably the same way at yours.</p>
<p>I'm running OS X 10.5, though... so you might want to look at some tutorials for 10.3.  The important part to remember is that you have checked the important protocols.  I'm not at my laptop right now, but feel free to send me a site message and I'll walk you through it later on.</p>]]>
    </content>
    <published>2008-10-07T01:35:27Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173933</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173933" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8172929" rel="nofollow">mariospants</a>: The vulnerabilities are not the same.  Sniffing is a HUGE aspect of the vulnerabilities.  The rest are standard virus/trojan/worm/etc vulnerabilities in which good habits (don't open attachments in emails, download from trusted sources, etc etc) apply.</p>
<p>When you're connected via ethernet to a cable modem, you really don't have to worry about people spying on your traffic (disclaimer: FISA stuff not included).  But even when you're on your own home network, just using WEP makes you vulnerable to sniffing... as WEP is insanely easy to crack.</p>
<p>Thus, when on a laptop, VPN is a very good idea... even when keeping it simple.  It's an added layer of protection that can easily be forgotten, so it should be left on (so if you forget, it's still on).  Having to ask yourself "is this security issue enough to warrant using a VPN?" will only make you more at risk.</p>]]>
    </content>
    <published>2008-10-07T01:33:34Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173811</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173811" />
    <title>Comment from PeterCachanilla on 2008-10-06</title>
    <author>
        <name>PeterCachanilla</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Guys, just relakks:

<p><a href="https://www.relakks.com/?cid=gb" rel="nofollow">https://www.relakks.com/?cid=gb</a></p>

<p>Relakks is the only one I know of that contractually obligates themselves NOT to look at or store logs of your data as it moves through their network. Plus, they are based out of Sweden, and run by the pirate party. woot.</p>

<p>Keep in mind, using any of these solutions (including Relakks), that your data is only secure up until the point where it leaves the internet from your VPN providers connection. It may protect your data from being sniffed from the people around you, but that doesn't the VPN provider from snooping in on it. The only way to transfer data home or back to your office safely is by encrypting the connection end-to-end.</p></p>]]>
    </content>
    <published>2008-10-07T01:30:14Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173598</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173598" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8172483" rel="nofollow">emilayohead</a>: Is it a WEP code?  Probably is... but when in doubt, error on the side of caution.  WEP keys are easy for sniffers to crack and listen to your traffic... so protect yourself.</p>
<p>WPA and especially WPA2 better security... but hotels usually don't use that because it's easier to just have WEP.</p>]]>
    </content>
    <published>2008-10-07T01:23:48Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173506</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173506" />
    <title>Comment from zoomZAP on 2008-10-06</title>
    <author>
        <name>zoomZAP</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8169685" rel="nofollow">narq</a>: I spotted someone doing this in the Mexico City airport as well. He was connected to the free wireless for Prodigy customers there and was using another wifi card to offer free internet to anyone else. All of the traffic was passing through his laptop, and when he realized I was on to him he shut his laptop and left (and the connection disappeared).</p>]]>
    </content>
    <published>2008-10-07T01:21:27Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173225</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173225" />
    <title>Comment from MattO on 2008-10-06</title>
    <author>
        <name>MattO</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>you also could use RDP to a home computer...</p></p>]]>
    </content>
    <published>2008-10-07T01:12:59Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8173183</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8173183" />
    <title>Comment from lannister80 on 2008-10-06</title>
    <author>
        <name>lannister80</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8170754" rel="nofollow">Ein2015</a>:When I was running 10.3 or so (it's been a few years), I had trouble with OS X's built-in VPN connectivity when trying to connect to my university.  I eventually talked to a tech who said their VPN concentrator "doesn't support" the mac client.  What the heck does that mean?  L2TP is L2TP, but I digress...</p>]]>
    </content>
    <published>2008-10-07T01:11:40Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8172929</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8172929" />
    <title>Comment from mariospants on 2008-10-06</title>
    <author>
        <name>mariospants</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8170829" rel="nofollow">Ein2015</a>: It's just that I hear so much about wireless security "issues" and aside from the sniffing aspect the vulnerabilities exist equally if you're on a wireless network or just surfing from home on a cable modem. In other words - if you keep it simple - nothing to freak out about.</p></p>]]>
    </content>
    <published>2008-10-07T01:03:44Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8172483</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8172483" />
    <title>Comment from emilayohead on 2008-10-06</title>
    <author>
        <name>emilayohead</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>Waving the white flag of idiot surrender, let me ask this pretty dumb question.  So, am I safe-ish at a place where I have to log in in order to access the internet?  For example, a hotel that gives me a code with my keys?</p>]]>
    </content>
    <published>2008-10-07T00:51:31Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171817</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171817" />
    <title>Comment from GearheadGeek on 2008-10-06</title>
    <author>
        <name>GearheadGeek</name>
        <uri>http://ghgsatx.blogspot.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://ghgsatx.blogspot.com">
        <![CDATA[<p>@<a href="#c8171212" rel="nofollow">Real Cheese Flavor</a>: That's typically a configurable policy.  My employer, for example, configures vpn to force ALL traffic through the tunnel, (for example, I can't print to my networked printer in my house while I'm on the VPN.)  I would think that any company that didn't enforce that kind of full-tunneling config would probably also leave the VPN config open to a local admin on the notebook, so you could set it to tunnel-all.</p>]]>
    </content>
    <published>2008-10-07T00:31:24Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171359</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171359" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8171212" rel="nofollow">Real Cheese Flavor</a>: Depends on the setup.  From my experience, depending on the client-side software... ALL traffic is encrypted and sent through the work server (and then off towards the rest of the world or to the internal work servers)... or only work traffic is even sent to the work VPN and the rest of the traffic is sent through whatever connection you're on and never even makes it to the work network.</p>
<p>Hope that makes sense. :)</p>]]>
    </content>
    <published>2008-10-07T00:16:23Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171313</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171313" />
    <title>Comment from GertrudeBabboon on 2008-10-06</title>
    <author>
        <name>GertrudeBabboon</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I use VPN every day to access my work server.  Note that many free/public wifi connections do not allow VPN clients.  I'm unable to connect at many public libraries,  cafes, public outdoor wifi areas, etc.  I have gone through the situation with our systems administrator, since I'm not a techie, and there's no way around most of them. It stick to the locations that do allow my VPN client.</p>]]>
    </content>
    <published>2008-10-07T00:15:09Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171256</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171256" />
    <title>Comment from corsec67 on 2008-10-06</title>
    <author>
        <name>corsec67</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8170645" rel="nofollow">Ein2015</a>: I have actually done something similar, using SSH to get around a silly restrictive internet connection.</p>
<p>However, instead of forwarding the whole Firefox window over a remote X session, I set up a proxy on the remote computer, and used that.</p>
<p>If you trust the local computer, then it would be faster to only use a proxy and keep the browser running locally.</p>]]>
    </content>
    <published>2008-10-07T00:13:27Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171212</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171212" />
    <title>Comment from Real Cheese Flavor on 2008-10-06</title>
    <author>
        <name>Real Cheese Flavor</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>One other catch is that often with VPN software from work only traffic that's going to/from the range of IP addresses that are on your employer's network goes through the VPN tunnel and everything else is just sent out nice and clear.</p>]]>
    </content>
    <published>2008-10-07T00:12:10Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171158</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171158" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8170664" rel="nofollow">mavrc</a>: That's probably more effort than most people want to go through.  There are many guides online for setting up such a thing... on any operating system... in case anybody really wants to do that.</p>
<p>With that said, there are a LOT of good uses for old computers... VPN, storage, web server, media center, etc! :)</p>]]>
    </content>
    <published>2008-10-07T00:10:32Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171097</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171097" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8169202" rel="nofollow">courtarro</a>: <a href="http://forums.bit-tech.net/showthread.php?t=64926" rel="nofollow">[forums.bit-tech.net]</a></p>]]>
    </content>
    <published>2008-10-07T00:08:24Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171070</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171070" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8168649" rel="nofollow">mariospants</a>: The average computer user doesn't think about using different passwords for different websites, much less asks themselves if logging into IM will safely send across a username/password or not.</p>
<p>The article is targeted to error on the side of caution.</p>]]>
    </content>
    <published>2008-10-07T00:07:30Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171025</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171025" />
    <title>Comment from mbressman on 2008-10-06</title>
    <author>
        <name>mbressman</name>
        <uri>http://www.marcbressman.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.marcbressman.com">
        <![CDATA[<p><p>I used Witopia and so far have been very happy with it (just started using it about 2 months ago).</p></p>]]>
    </content>
    <published>2008-10-07T00:05:50Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8171023</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8171023" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8169831" rel="nofollow">putch</a>: I believe you can just use port forwarding on your router for that.  A google search for "port forwarding [router model]" should provide you with all you need for that.</p>
<p>This should also be helpful for everybody... with pictures! :D <a href="http://forums.bit-tech.net/showthread.php?t=64926" rel="nofollow">[forums.bit-tech.net]</a></p>]]>
    </content>
    <published>2008-10-07T00:05:46Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170944</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170944" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8169685" rel="nofollow">narq</a>: Even if somebody is sniffing or setting up fake connections, the first thing should be to test for internet access... (can you see Google?  great!)... after that, before you do ANYTHING else, encrypt all your traffic (ex: through a VPN or SSH), then you're fine and all they sniff off you is encrypted.  :)</p>]]>
    </content>
    <published>2008-10-07T00:03:02Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170895</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170895" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8169223" rel="nofollow">post_break</a>: I think you're talking about a MITM attack: <a href="http://en.wikipedia.org/wiki/Man-in-the-middle_attack" rel="nofollow">[en.wikipedia.org]</a></p>]]>
    </content>
    <published>2008-10-07T00:01:25Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170829</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170829" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8170142" rel="nofollow">mariospants</a>: You're probably safe against WiFi intrusion attacks... however, the biggest issue is that ALL of your wireless traffic is sniffable, in plaintext (unless encrypted via SSH, VPN, https, etc), without you knowing.  Hence the article... :)</p>]]>
    </content>
    <published>2008-10-06T23:59:33Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170754</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170754" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8168768" rel="nofollow">segamanxero</a>: It does, but you still need somewhere to connect to.  I VPN into work all the time.</p>
<p>If you need help setting it up, reply here and I'll be happy to walk you through it.  :)</p>]]>
    </content>
    <published>2008-10-06T23:57:21Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170729</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170729" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8168690" rel="nofollow">blackmage439</a>: TrueCrypt is pretty decent at protecting your laptop's files... however, if you're traveling overseas and don't want US Customs taking a copy of everything on your laptop (including asking you for the key to unlock the TrueCrypt volume), you might want to invest in the IronKey.  I have one and I can tell you that it is absolutely fantastic!</p>
<p>Don't forget that TrueCrypt will not encrypt your traffic, just your hard drive.</p>]]>
    </content>
    <published>2008-10-06T23:56:36Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170664</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170664" />
    <title>Comment from mavrc on 2008-10-06</title>
    <author>
        <name>mavrc</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>If you're at all network-savvy, it's pretty easy to set up <a href="http://m0n0.ch/wall" rel="nofollow">m0n0wall</a> (or any other software firewall package, like IPCop, PFsense, etc) on an old computer at home, set it up as a VPN endpoint, and use it at will. You can run it on that old computer you stuck in the closet years ago (you know, the one you really intended to donate to a school but never got around to it) just by throwing in another $10 network card.</p>
<p>This is my favorite solution to this particular problem, and I've been doing this for years at home. It's obviously more difficult to set up than a paid service, and it is theoretically possible your ISP <i>might</i> get annoyed about it depending on how aggressively they interpret their TOS (this is largely just for fair warning in my experience, but it is possible.)</p>]]>
    </content>
    <published>2008-10-06T23:54:37Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170645</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170645" />
    <title>Comment from Ein2015 on 2008-10-06</title>
    <author>
        <name>Ein2015</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8168476" rel="nofollow">steegness</a>: SSH tunneling is fine, as long as you trust what's on the other end.</p>
<p>For example, I use SSH to connect to my linux box.  All traffic between me and the linux box is encrypted.  If you trust linux box's connection (for example: it could be at your house or at a secured hosting environment), and you have a *nix laptop, you should be able to use X-forwarding... so you can run Firefox on that linux box and see the results on your screen... totally encrypted between the two.</p>
<p>If you have windows, X-forwarding is a bit more difficult to do and may cost money... but anybody who is interested should send me a message and I'll see what information I can provide.  :)</p>
<p>If I remember correctly, you should be able to remote desktop through SSH as well, regardless of operating systems.  I can look for more information on this as well if necessary.</p>
<p>Hope this helps!</p>]]>
    </content>
    <published>2008-10-06T23:53:41Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170182</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170182" />
    <title>Comment from Chris Walters on 2008-10-06</title>
    <author>
        <name>Chris Walters</name>
        <uri>http://twitter.com/consumerchris</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://twitter.com/consumerchris">
        <![CDATA[<p>@<a href="#c8168690" rel="nofollow">blackmage439</a>: All the software suggestions listed above don't require anything running back at home. They encrypt your data through a remote server elsewhere.</p>
<p>This is why I wrote they weren't really an end-all in privacy, because technically you're letting another party deal with encrypting your traffic. But it's better than nothing.</p>]]>
    </content>
    <published>2008-10-06T23:38:47Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170142</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170142" />
    <title>Comment from mariospants on 2008-10-06</title>
    <author>
        <name>mariospants</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8169767" rel="nofollow">putch</a>: Well and great advice, but I'm already running a firewall, not accessing sites that require personal information and Windows + dlls and apps that require access to the Internet are either updated to latest or disabled (i.e. no IM). So, can anybody access my system via Wifi or not?</p></p>]]>
    </content>
    <published>2008-10-06T23:37:24Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8170078</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8170078" />
    <title>Comment from mariospants on 2008-10-06</title>
    <author>
        <name>mariospants</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8169155" rel="nofollow">courtarro</a>: I disabled my IM client as soon as it installed itself without my permission and my advice still stands, right? I recommend NOT entering anything with a username and password and avoiding online shopping.</p></p>]]>
    </content>
    <published>2008-10-06T23:35:06Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169831</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169831" />
    <title>Comment from putch on 2008-10-06</title>
    <author>
        <name>putch</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>winxp pro (not sure about home) has vpn client and server built in. you'll probably also need a router that supports a VPN pass through.</p>]]>
    </content>
    <published>2008-10-06T23:27:34Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169778</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169778" />
    <title>Comment from putch on 2008-10-06</title>
    <author>
        <name>putch</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8169767" rel="nofollow">putch</a>: that is, unless you use some kind of encrypted tunnel...VPN, SSH, etc.</p>]]>
    </content>
    <published>2008-10-06T23:26:08Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169767</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169767" />
    <title>Comment from putch on 2008-10-06</title>
    <author>
        <name>putch</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p>@<a href="#c8168909" rel="nofollow">mariospants</a>: also, most of the web-traffic that you send can be captured by a 3rd party. so while running a firewall might prevent them from accessing the files on your laptop the data you send over the web (that's not https) will be vulnerable.</p>]]>
    </content>
    <published>2008-10-06T23:25:39Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169685</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169685" />
    <title>Comment from narq on 2008-10-06</title>
    <author>
        <name>narq</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>I was at the airport and found a dummy system phishing for information. There were at least a dozen people connected to it. It was posed as a fake airport router. I connected and did some "investigating" and the person shut down the connection. Not sure who it was or what information they got from users but this was at a major airport in the terminal.</p>
<p>No connection is secure unless it offers a certificate authenticating who you are actually connecting to. Sad part is, anyone can spoof that and you are never actually secure. The only way to be safe is to check with the people who work there and find out which connection is legit. The danger on a public network is minimal, it's a little harder to get your data. They like you to connect directly to them as though they are a router.</p>]]>
    </content>
    <published>2008-10-06T23:23:31Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169638</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169638" />
    <title>Comment from Applekid on 2008-10-06</title>
    <author>
        <name>Applekid</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8169223" rel="nofollow">post_break</a>: Well, I hope whoever I'm connecting to right now likes burritos because that's what they're getting.</p><br />
<p><a href="http://tinyurl.com/3wqa8a" rel="nofollow">[tinyurl.com]</a></p></p>]]>
    </content>
    <published>2008-10-06T23:21:59Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169595</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169595" />
    <title>Comment from chrylis on 2008-10-06</title>
    <author>
        <name>chrylis</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8168909" rel="nofollow">mariospants</a>: Being on a shared wireless network doesn't introduce or remove any vulnerabilities that didn't exist on "shared-segment" networks (like Ethernet back when hubs were common).</p>
<p>However, any intruder who's around can send packets to your computer, and if your OS (*ahem*Windows*ahem) or some program running on your computer handles them incorrectly, then there could be problems.</p>
<p>Generally, turn off any servers that you don't need for a particular reason; on Windows, the only server you'd need on most laptops is file sharing, and it's a good idea to turn it off when you're not using it.  Also, Windows computers should use a software firewall to add one more level of protection against your OS's doing something stupid when an unexpected packet comes in.</p>]]>
    </content>
    <published>2008-10-06T23:20:58Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169591</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169591" />
    <title>Comment from discounteggroll on 2008-10-06</title>
    <author>
        <name>discounteggroll</name>
        <uri>http://www.discounteggroll.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.discounteggroll.com">
        <![CDATA[<p>@<a href="#c8169223" rel="nofollow">post_break</a>:</p>
<p>that was a creepy, helpful and all-around awesome post</p>]]>
    </content>
    <published>2008-10-06T23:20:48Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169521</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169521" />
    <title>Comment from Applekid on 2008-10-06</title>
    <author>
        <name>Applekid</name>
        <uri>http://</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8168909" rel="nofollow">mariospants</a>: It is true, in the same way that you cannot be injured in any way (outside the potential vulnerability related to specific tissues and organs).</p><br />
<p>A machine with no applications has no attack surface... it's also about as useful as glowing stone tablet except with limited battery life. The point of hooking it up to a network is to use an application to reach out across it. In fact, the software used to implement network connectivity is, in fact, a kind of application in and of itself.</p><br />
<p>Security is always a balance of usability and protection.</p></p>]]>
    </content>
    <published>2008-10-06T23:18:43Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169433</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169433" />
    <title>Comment from LisaRodeo on 2008-10-06</title>
    <author>
        <name>LisaRodeo</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>The great podcast Security Now! discussed this topic way back in episode #19.  The basic technology of how VPNs work was explained in episodes 14, 15, and 17.  Get them all here:

<p><a href="http://www.grc.com/securitynow.htm" rel="nofollow">http://www.grc.com/securitynow.htm</a></p>

<p>I personally use Hamachi to secure my VNC and RDP traffic and a VPN account with SwissVPN for when I'm in hostile territory.</p></p>]]>
    </content>
    <published>2008-10-06T23:15:54Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169278</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169278" />
    <title>Comment from Chris Walters on 2008-10-06</title>
    <author>
        <name>Chris Walters</name>
        <uri>http://twitter.com/consumerchris</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://twitter.com/consumerchris">
        <![CDATA[<p>@<a href="#c8168476" rel="nofollow">steegness</a>: I think the rule-of-thumb should be: if the solution can be downloaded and installed like any other program, with few if any special skills needed—"install it, launch it, and it just runs"—then it's a viable option.</p>
<p>This post is geared toward people who don't know what VPN or SSH means, who don't want to know, and who won't or can't bother with anything more complicated than the sort of installation they're already used to.</p>]]>
    </content>
    <published>2008-10-06T23:11:35Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169223</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169223" />
    <title>Comment from post_break on 2008-10-06</title>
    <author>
        <name>post_break</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>VPNs account for nothing if you have no idea who you are connected to. If you have you laptop to automatically connect to networks it has connected to before you can be herded like cattle.</p>
<p>If you don't look at your SSL certificate closely you can have your username and password stolen easily.</p>
<p>Just because it says SSL or <a href="https://" rel="nofollow">[]</a> does not mean it is secure in any way.</p>
<p>Remember that just because a network is open doesnt mean that its fair game. Who knows who is on the other end, it could be me.</p>]]>
    </content>
    <published>2008-10-06T23:10:14Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169202</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169202" />
    <title>Comment from courtarro on 2008-10-06</title>
    <author>
        <name>courtarro</name>
        <uri>http://www.hydrous.net/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.hydrous.net/">
        <![CDATA[<p>"Professional" versions of Windows (Win XP Pro, etc) have VPN support built in as well: in XP it's configured as an "Incoming" network connection. You will need to configure your firewall or router to forward the appropriate ports, but that's a good solution for single users. Then your traffic goes through your home computer connection.</p>]]>
    </content>
    <published>2008-10-06T23:09:35Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169161</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169161" />
    <title>Comment from SultanaTrigeminus on 2008-10-06</title>
    <author>
        <name>SultanaTrigeminus</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>>>for an intruder to enter into your system while you are hooked up to a shared wifi network. Is this trueNo, that makes no sense.  You are on shared media, it is trivial to attach peer machines.<br />
</p>]]>
    </content>
    <published>2008-10-06T23:08:21Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8169155</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8169155" />
    <title>Comment from courtarro on 2008-10-06</title>
    <author>
        <name>courtarro</name>
        <uri>http://www.hydrous.net/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.hydrous.net/">
        <![CDATA[<p>@<a href="#c8168649" rel="nofollow">mariospants</a>: That may be true for many, but your computer does a lot of stuff on your behalf that you might not realize is passing your personal information unprotected. What about your IM client? They're not necessarily encrypted. An email client could be sending your username and password in the clear. Simply visiting the homepage of a site with stored credentials is enough for someone to steal your unique cookies and reproduce your session data to access that site.</p>]]>
    </content>
    <published>2008-10-06T23:08:12Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168925</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168925" />
    <title>Comment from SultanaTrigeminus on 2008-10-06</title>
    <author>
        <name>SultanaTrigeminus</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>There really is no safe way to do this.  Your system makes all sorts of asynchronous requests using unsafe protocols that can be spoofed.  

<p>For example, 100% of apple macs with dashboard widgets make periodic or on-demand connections over http-on-plain-tcp (not https, not ssh tunnelable, ...) requests to joe random server.  </p>

<p>The dashboard widgets are really safari, javascript and all, so a local host that chooses to spoof the response faster than the actual server is subject to a javascript payload attack (through no user action).  Yahoo widgets for Windows and google desktop widgets have similar issues.</p>

<p>The ___only___ easy to manage, safe way to access a public hotspot of any kind is to use a VPN client and immediately connect to the VPN.  The downside is that almost no vpn client, including Cisco's, does the right thing and installs a 100% drop policy for non-VPNed packets prior to establishing the tunnel.  Part of this is that there is no good way to do it; most hotspots require some sort of host spoofing http-to-https redirect to get you to the hotspot authentication page.  While this is happening, if you get unlucky, you are fucked.</p>

<p>Pretty much all network communication at this point should use SSL with certificate validation (and proper enforcement for any autonomous agent, including things like th dashboard widgets, email, ...).  No one should ever use pop-on-plain-tcp again, no plain http, etc.  Ever.</p>

<p>But this isn't practical, so "hurry up and get on the vpn" is about as close as you can get.  Running vpnless or attempting to craft hyour own via ssh is hopelessly naive.</p></p>]]>
    </content>
    <published>2008-10-06T23:01:47Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168919</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168919" />
    <title>Comment from howie_in_az on 2008-10-06</title>
    <author>
        <name>howie_in_az</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8168787" rel="nofollow">mercnet</a>: These are the same people using unpatched MS-Windows ME installs, what do you expect?</p>]]>
    </content>
    <published>2008-10-06T23:01:38Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168909</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168909" />
    <title>Comment from mariospants on 2008-10-06</title>
    <author>
        <name>mariospants</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>Just a question for you uber geeks: after a little researching, I could find no real way (outside of the potential vulnerability related to specific applications) for an intruder to enter into your system while you are hooked up to a shared wifi network. Is this true?</p></p>]]>
    </content>
    <published>2008-10-06T23:01:22Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168886</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168886" />
    <title>Comment from steegness on 2008-10-06</title>
    <author>
        <name>steegness</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>@<a href="http://consumerist.com/5057854/the-idiot+proof-way-to-securely-use-public-wi+fi#c8168787" rel="nofollow">mercnet</a>: The same people would've gone there for "VPN" without the explanation of the article; it doesn't mean that it's necessarily a difficult concept to grasp, convey, or implement (though it very well may be... hence my wondering about the level of SSH versus the level of the article).</p></p>]]>
    </content>
    <published>2008-10-06T23:00:39Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168834</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168834" />
    <title>Comment from TracyHamandEggs on 2008-10-06</title>
    <author>
        <name>TracyHamandEggs</name>
        <uri>http://bromoblog.wordpress.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://bromoblog.wordpress.com">
        <![CDATA[<p>@<a href="#c8168649" rel="nofollow">mariospants</a>: That was my exact thought, though I don't live in an urban area/hang out in coffee shops.  When I use my personal laptop in airports or any other free wi-fi area I dont access anything I wouldnt want tracked, and I don't keep personal account info saved on a comp I carry around with me.</p>]]>
    </content>
    <published>2008-10-06T22:59:12Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168787</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168787" />
    <title>Comment from mercnet on 2008-10-06</title>
    <author>
        <name>mercnet</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>@<a href="#c8168476" rel="nofollow">steegness</a>: You just sent a lot people to wikipedia on that comment. It does amaze me how clueless people are when using public wifi, leaving shared folders open to anyone.</p>]]>
    </content>
    <published>2008-10-06T22:57:45Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168768</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168768" />
    <title>Comment from SegamanXero on 2008-10-06</title>
    <author>
        <name>SegamanXero</name>
        <uri>http://segamanxero.googlepages.com/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://segamanxero.googlepages.com/">
        <![CDATA[<p>doesnt macintosh come with VPN built in? i coulda sworn i seen it lurking in the network preferences....</p>]]>
    </content>
    <published>2008-10-06T22:56:55Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168690</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168690" />
    <title>Comment from blackmage439 on 2008-10-06</title>
    <author>
        <name>blackmage439</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>What an awesome idea!</p>
<p>Sadly, I turn off my router when I'm not home, so this isn't a viable solution. I can't shell out the funds for an Ironkey either. My solution is to not keep any personal information on my laptop, and to not sign-on to vital services (financial websites, email to a lesser extent) while surfing in the public view. As for files? One of my goals is to start experimenting with TrueCrypt.</p>]]>
    </content>
    <published>2008-10-06T22:54:11Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168649</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168649" />
    <title>Comment from mariospants on 2008-10-06</title>
    <author>
        <name>mariospants</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>well, if all you're doing is surfing consumerist while at Starbucks - and not entering any sensitive information such as a username and password - the easiest advice is not to do anything in public you wouldn't do if a stranger was looking over your shoulder.</p></p>]]>
    </content>
    <published>2008-10-06T22:52:29Z</published>
  </entry>

  <entry>
    <id>tag:64.14.177.195,2008://1.5057854-comment:8168476</id>
    <thr:in-reply-to ref="tag:64.14.177.195,2008://1.5057854" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html"/>
    <link rel="alternate" type="text/html" href="http://consumerist.com/2008/10/the-idiot-proof-way-to-securely-use-public-wi-fi.html#c8168476" />
    <title>Comment from steegness on 2008-10-06</title>
    <author>
        <name>steegness</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p><p>Would SSH tunnelling be a viable option? Or is that too tech-y for this overview?</p></p>]]>
    </content>
    <published>2008-10-06T22:45:56Z</published>
  </entry>


</feed>



