How do I hide my router's password? Windows 7 'Starter'__

Anonymous
2010-01-01T23:23:29+00:00

Hi,

We just got a Lenovo S10 Netbook with Win 7 'Starter' version for my daughter and I have a question about configuring the Wifi access.  This is my first exposure to Win 7, so I'll describe things as best I can.

I clicked on the "Internet Access" icon in the tray and up came the list of Wireless Network Connections.  I selected the one for our WPA-PSK encrypted router and cut and pasted my ~30 character 'Network Security Key' (passphrase/password) and, bingo, I was connected to the internet and websurfing just fine.

Here is my question.  How to I permenently hide my router's 'Network Security Key'? 

When I go back to the Wireless Network Connections and right click my router and select 'Properties" and go to the "Security" tab, there is a small check box labelled "Show Characters" that will toggle back and forth between a string of dots and the 'plain text' 'Network Security Key' for anyone to read.  I'm not willing to keep her set up to use our network if anyone with access to her Netbook can look up my router's WPA password. 

I have quite a few devices connected wirelessly to our network, but this is the only one where I can see the password in plain text.  The others only show a string of stars or dots to 'encrypt' the display of the password.

I will appreciate any help and so will the daughter that hopes to keep accessing the internet.

many thanks,  BDT

Windows for home | Previous Windows versions | Internet and connectivity

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
Answer accepted by question author
Anonymous
2010-01-02T11:36:17+00:00

AFAIK you can't override that, although I could be wrong about that.

As far as others getting your wireless key from her netbook make sure your daughters account is astandard user account and that she does not have administrator permissions. That way if she tried to see the wireless security properties for your wireless network she can't unless she enters the administrator password. In the example screen shot if I am logged in as a standard user and try to check the Show characters checkbox UAC pops up and requests my administrative user password.

http://cid-25ab668da65c8fbe.skydrive.live.com/self.aspx/Windows%20images/Showcharacters.png

In all cases make sure the administrative user accounts are password protected with a strong password and access to those is severely restricted.

http://windows.microsoft.com/en-us/windows7/Why-use-a-standard-user-account-instead-of-an-administrator-account

FWIW I run as a standard user 99% of the time on my Windows 7 laptop. My wife runs as a standard user 100% of the time on her XP Pro desktop. When I setup my PCs I create an administrative user, ie. Root in my case, and the required number of standard users for each machine. All are password protected. Root is only used to install programs, change system stuff, security settings, etc...etc...etc...


MS-MVP Windows Desktop Experience, "When all else fails, read the instructions"

Was this answer helpful?

1 person found this answer helpful.
0 comments No comments

62 additional answers

Sort by: Most helpful
  1. Anonymous
    2010-07-12T19:11:17+00:00

    I don't understand how revealing a password to a PC's superuser is a security flaw.  Did you know that Windows Vista and Windows 7 offer the same "flaw" to 56K dial-up users as well?  It's true: It's been there, in the OS, for nigh on four years now.

    The wisdom of doing so is clearly up for debate, but the feature neither adds nor compromises a properly managed PC's or network's security.  Anyone with administrator rights on a wirelessly-connected PC can learn its connection keys trivially, whether through a built-in tool such as this feature or a third-party tool found by a trivial Web search.

    It is the network administrator's responsibility to regulate which systems can access his network, when, and how, but that responsibility does not extend to those systems' users.  It's the system administrators of each system who are responsible for regulating which users can access those systems and regulating which networks their users can connect to.  In most companies, those two responsibilities are carried by the same person or the same department, but they are separate responsibilities.  In homes, those responsibilities should be carried by the heads of household or a single trusted family member, but through user ignorance the responsibility of system administration, separate from network administration, often falls to the primary users instead.

    When you allow a system to connect to your network, wirelessly or otherwise, you must trust that the system's administrator will not compromise the security of your network by disclosing any network connection credentials.  The only way you can do this, if you don't trust that system's users, is to prevent any of them from being that system's administrators.

    In a home network scenario where you're that network's administrator, the best way is exactly according to the post accepted as the answer: Become the system's administrator, and make all its other users limited account users.

    And occasionally change the wireless network's password, as should be done with any password.

    Edit:

    A reasonably secure alternative, in the case of outside contractors or consultants needing access to your network from their own wireless-enabled laptops, is to create a separate wireless network connected via ethernet to your main network, for which a separate wireless key is required for access.  Just monitor this separate wireless segment for abuse, and you can take action to curb or remove potential abuse by the outsiders without affecting the operation of your internal network, and without anyone outside needing to learn your inside's wireless credentials.


    Windows Genuine Advantage disadvantaged my genuine Windows. Posted from genuine Ubuntu.

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2010-07-12T16:10:44+00:00

    I'm at a loss as to how this question has generated responses along the lines of dealing with the issue by securing the laptop administrative account.  This doesn't solve the issue at all.

    As mentioned above, if you have a situation on a small business network where you have a mixture of employees and consultants and use a wireless network you are vulnerable.  Since it's typically a business policy that consultants provide their own laptops, they will most likely have administrative access to their laptops or an administrator of their company will.

    One concerned about security should see the importance of limiting the exposure of credentialed information whether that be user credentials or network credentials.  I can understand providing the option to show characters when created the connection but it should never never never be displayed once it is saved. 

    It would appear to me that this should be considered a bug, a security flaw that Microsoft needs to resolve.

    Was this answer helpful?

    0 comments No comments
  3. Anonymous
    2010-06-03T05:38:47+00:00

    We are having the same problems here in our school. The only option we can think right now is to disallow windows 7 users from accessing or wifi. I have the same sentiment as RRRRyan.Ü A lot of our students will be forced to reinstall windows xp or vista. If in case you guys will find a "fix/solution" to this flaw please email me at *** Email address is removed for privacy ***. I really need a solution for this. Thanks.Ü

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2010-06-02T17:34:46+00:00

    How?  Do you care other people connect directly to your internal network?  Knowing your WPA password is an invitation to your internal network --- and remotely! 

    Rubbish! Sorry, you are SO PARANOID it's unbeleivable. If all your Users are Standard users with strong passwords then the possibility of casual incursion is almost NIL!

    I'm not going to bother to argue with you any more. Goodbye and I hope you have a large stock of tinfoil hats.


    If you find my response helpful, please click on the "Vote as Helpful" button!Thank youMy Blog

    Are you joking.  Hope you still read this.  For a small business that has employees who own there own PCs, you can't take them out of the admin group.  Think outside of your own world.

    Was this answer helpful?

    0 comments No comments