Data Ownership And Classification

A MAC address filter is useless, because an attacker can easily see which MAC addresses gain access to the router. DHCP automatically distributes IP addresses. Disabling DHCP is a pure waste of time. Normally, when you want to access the router configuration, you have to type an administrator password in order to gain access to the configuration (usually "admin" or something like that). Then he can simply falsify (spoof) his own MAC address in order to get access. An attacker can set up an access point with the SSID of your network, so that your laptop will connect with it automatically, without asking for permission. So they spread the SSID everywhere they go.

To begin with, it's technically impossible to stop the SSID broadcast entirely. With a MAC address filter you only make things more difficult for yourself. Then I'll name 12 security measures that are truly effective. Anti-Virus Programs, Anti-Adware, Anti-Spyware and Firewalls are the some of the security systems generally employed to guard against these unwanted intrusions in both single computers and a network of computers. Hiding the SSID even creates an extra risk(!): when you've disabled broadcasting of the SSID in the network router, the connected computers have to disclose their presence continually. Together with many data packages that the router sends, it still sends the SSID.

Because there are at least four(!) other ways in which a router still discloses a "hidden" SSID to the world. WPA with TKIP is still reasonably safe. AES is the most modern and secure form of WPA encryption. The signal encryption should at least be WPA Personal. Every reasonably modern router offers the possibility to set the encryption to WPA. Therefore not: John's network, but JohnsNetwork or Johns-network.

Policies that describe security objectives clearly define measurable, achievable goals.

Create your own WPA key and discard the WPA key that the manufacturer of your router may have installed on it. Is your router so old that it can't handle WPA? Change the default SSID (network name) to one of your own invention, from which it's not possible to deduce the brand and/or type of the router. Note the possible effect this may have on certain online games: sometimes you have to open a certain port in the firewall for those.