Remember Me
forgot your password?

Bluetooth for connection

Bluetooth: What it is and How it Works

I know many experienced computer users who never give a thought to Bluetooth. “Oh, yeah, I think that’s built into my laptop but I never use it” is a common refrain. Initially touted as the technology that would finally free us from the horrors of multiple tangled cables and cords, Bluetooth didn’t catch on as quickly as expected. Until recently, there just weren’t that many useful (with the emphasis on “useful”) Bluetooth devices available – at least, not for desktop computing. Users of handheld computers (such as my iPaq) adopted the technology more quickly, as it allowed us to easily attach portable keyboards, headsets, printers, etc. to our portable devices (which often don’t have a bunch of connection ports like desktops and laptops do). Bluetooth-enabled cell phones allow you to connect a PDA or portable computer to the Internet through them.

Bluetooth was designed to be the basis of the Personal Area Network (PAN) – a way for devices within relatively close proximity to communicate wirelessly with one another. The range for Bluetooth transmissions varies from about 1 meter up to 100 meters, depending on the power class of the device. Thus, the most powerful (Class 1) can communicate over a distance of more than 300 feet, similar to a typical wi-fi network.

Like 802.11b and g, Bluetooth transmits over the 2.4 GHz radio frequency. Its speed is limited to about 1 Mbps (far slower than wi-fi, but still roughly equivalent to a typical broadband Internet connection). It uses LMP (Link Manager Protocol) to handle the connections between devices.
Bluetooth Security Issues

Bluetooth can operate in one of three security models:

1. is non security.
2. provides security at the service level, after the channel is established.
3. provides security at the link level, before the channel is established.

Each Bluetooth device has a unique 48-bit device address. The authentication scheme is challenge-response, using symmetric keys, and encryption is done with a key that can be up to 128 bits (negotiated by the communicating devices, with each device having a maximum key length defined). A 128 bit random link key handles security transactions between two or more devices.

When two Bluetooth devices establish a communications channel, they both create an initialization key. A passkey or Personal Identification Number is input and the inititalization key is created, and the link key is calculated using it. Then the link key is used for authentication.

The first security concern is the passkey or PIN. As with any key, long keys are more secure than short ones. If a hacker is able to discover the passkey, he can calculate possible initiation keys, and then from that, calculate the link key. Making the passkey long will make it much harder to accomplish the first step.

The initial key exchange takes place over an unencrypted link, so it is especially vulnerable. It’s best if this part of the BT device pairing process takes place in a more physically secure location (that is, where there are not likely to be any lurkers with BT devices who could intercept the communications). A hacker could record transmissions sent over the BT frequency and use them to recreate the PIN.

Rather than using the same fixed passkey all the time, it should be changed frequently (how frequently depends on the types of devices and the required security level).

Link keys can be combination keys or unit keys. Best security practice is to use combination keys instead of unit keys. When you use a unit key, you must use the same key for all secure transactions, and the key has to be shared with other trusted devices. This means any trusted device can potentially access traffic with other trusted devices using this key.

It’s possible to use the Bluetooth address to identify a particular device (and associated user) and log those transactions, which can create privacy concerns.
Why Does Bluetooth Security Matter?

Many Bluetooth users only use the technology to connect a wireless headset or similar device to their portable computers, and they may wonder why security is a big deal. Implementing security, even for these types of device pairings, can prevent an unauthorized user from using the headset.

However, another use of Bluetooth is to create a temporary computer network. For example, several people in a meeting room can connect their Bluetooth-enabled laptops to each other to share files during the meeting.

When you use Bluetooth to create a temporary network, it is usually an ad hoc network; that is, computers communicate directly with each other rather than going through a wireless access point (WAP). This means you have no centralized point of security control, as you do with a WAP (for example, you can configure a WAP to use MAC address filtering and other built-in security mechanisms). Thus, security becomes a major concern because you can be exposing important data stored on your laptop to others on the Bluetooth network. Remember that the range for class 1 Bluetooth devices can be more than 300 feet – far enough so that in some locations, the BT equivalent of the wi-fi “war driver” may be able to establish a link with your computer even though not within your sight.

Another special concern is the security of Bluetooth mobile phones. These phones may have information stored on them such as the addresses and phone numbers of contacts, calendar information and other PDA-type data. Hacking into these phones using Bluetooth is called bluesnarfing. Newer mobile phones and software upgrades for older phones can patch this vulnerability.

A related hacking technique is called bluebugging, and it involves accessing the phone’s commands so that the hacker can actually make phone calls, add or delete contact info, or eavesdrop on the phone owner’s conversations. This vulnerability, too, is being addressed by phone manufacturers. Thus, if you own a BT-enabled phone, it’s important to keep the software updated or upgrade to the latest phone models frequently.

Bluetooth devices can also be targets of Denial of Service (DoS) attacks, typically by bombarding the device with requests to the point that it causes the battery to degrade.

Finally, there are “cell phone worms” such as Cabir that can use the Bluetooth technology to propagate to other BT devices. Cabir targets phones that use the Simbian OS.

The relatively short range of most Bluetooth devices helps to ameliorate the risk of most of these security issues. For example, to practice bluesnarfing or bluebugging against a BT phone, the hacker would typically need to be within about 10 meters (a little less than 33 feet) of the target phone.

Bluetooth Headsets

Darren Evans

I live and work in the South East of England I am married with 4 children. I am the publisher of several websites my latest being Cash Advance & New Build & plot Search

Rate this Article: 0 / 5 stars - 0 vote(s)
Print Email Re-Publish

Add new Comment



Captcha

  • Latest Gadgets and Gizmos Articles
  • More from Darren Evans

ViewSonic VP2365wb Review

By: anilrgowda | 23/11/2009
The ‘ViewSonic VP2365wb’ is available at a price of $350. The monitor has a display of 23” E-IPS with numerous options, good performance and 5 USB ports. Its weak points are low brightness, display with a ungenerous feeling of framework and the absence of a HDMI connection. The colors appear clearly, but they move from left to right while being viewed on the monitor. The monitor has a black, matte, thin bezel which measures 0.7” from all sides.

EBook Readers and their Smaller Brothers and Sisters

By: Marco Gustafsson | 22/11/2009
Ebook readers are becoming more popular and Amazon has opened a door to their competitors by refusing to offer Kindle in Europe until October 2009. Kindle is still one of the most popular eReaders on the market, however, although others are selling on price. Nevertheless, the competition from mobile applications for cell phones, palm computers and the new smaller notebook PCs is increasing and their quality improving.

Premium Solar Charger with Metal Casing and 8 Adapters

By: Raphael Hidalgo | 22/11/2009
It's the ideal green gadget for those on the go! This premium solar charger really sets itself apart from the rest with its robust metal casing. It's perfect for where you'll find yourself when you need to use it the most - the outdoors. Visit the website: http://www.electronicschinawholesale.com You will find much more.

Solar Panel Charger - Portable Green Power Supply

By: Raphael Hidalgo | 22/11/2009
Solar Panel Charger for recharging portable electronics using a USB cable power connection. This thoughtfully designed folding solar panel charger is ideal for the wilderness adventurer or anyone planning an extended trip away from any electrical connections. The pocket sized solar panel can recharge any electronic product capable of recharging from a USB connection. Visit the website: http://www.electronicschinawholesale.com You will find much more.

Multi-Pattern Green Laser Pointer Pen

By: Raphael Hidalgo | 22/11/2009
A high quality laser pointer perfect for presentations, lectures, seminars, project screens, charts, slides, tour guides and facility inspections. With a bright (green) colored laser with exceptional clarity, this pointer is the ideal tool for presentations. Visit the website: http://www.electronicschinawholesale.com You will find much more.

LED Grow Light with Super Harvest Colors (NASA Red and Blue)

By: Raphael Hidalgo | 22/11/2009
LED Grow Light with Super Harvest Colors (NASA Red and Blue). Introducing the L.E.D. Grow Light, a new revolution in the way we grow indoors, providing abundant harvests with a lower energy bill. Visit the website: http://www.electronicschinawholesale.com You will find much more.

Solar Powered Courtyard Landscaping Light

By: Raphael Hidalgo | 22/11/2009
Solar Garden Lights - excellent, environmental idea for your home or garden. Perfect for Christmas or any time of year - looks great strung around a bush or doorway. The string of fairy lights is 11.5 meters long and powered by a 5W mono-crystalline Solar panel. It can run up to 12 hours when fully charged and it contains 60 bright red lights. Visit the website: http://www.electronicschinawholesale.com You will find much more.

Bass Fishing Tackle

By: David Neich | 22/11/2009
Before buying Bass Fishing Tackle,read this article.

Commemorative Gold Coins

By: Darren Evans | 20/05/2009 | Jewelry
Gold coins are produced by most countries national banks as both a trading tool and commemorative

Bentley Continental GT Speed

By: Darren Evans | 30/04/2009 | Cars
How can the Bentley Continental GT be improved, well buy building a Bentley Continental GT Speed but surly nobody can better the Speed

Is planning permission always required

By: Darren Evans | 30/04/2009 | Real Estate
Is planning permission always required

Do you need a professional project manager

By: Darren Evans | 28/04/2009 | Real Estate
Project managing your own self build can save between 20 to 30% on the total build cost but get it wrong and it can lead to some extra costs.

Bluetooth for connection

By: Darren Evans | 06/04/2009 | Gadgets & Gizmos
Bluetooth what it is and How it Works

Gold the world currency

By: Darren Evans | 06/04/2009 | Jewelry
Gold is much more than just just Jewellery

Upgrading a mobile and the enviromental impact

By: Darren Evans | 06/04/2009 | Cell Phones
When you purchase a new mobile phone and throw your old handset in the bin do you ever consider the impact on the environment.

The new Bentley Speed

By: Darren Evans | 03/04/2009 | Cars
the 200 mph Bentley Continental Speed is it just a big VW

Submit Your Articles Free: Signup
Article Categories




Use of this web site constitutes acceptance of the Terms Of Use and Privacy Policy | User published content is licensed under a Creative Commons License.
Copyright © 2005-2008 Free Articles by ArticlesBase.com, All rights reserved. (0.18, 1, w2)