Mon Sep 10, 2012 9:46 am
Really paranoia? I think if you use WPA2 only, enable AES, disable TKIP and use a randomly generated 63 character key using strings from random.org I think you will be fine until WPA2 gets properly compromised.
No need to hide the SSID, it seems it has to transmit more data when hidden which 'in theory' makes it more hackable. When you hide the SSID it can be seen with the proper tools anyway, it just doesn't advertise itself. Also you *could* use a MAC address list but again that is only cosmetic, it takes 1 minute gather a MAC address from a valid client and use that instead.