The term covers several technologies; in enterprise networking, it often refers to an IEEE 802.11 wireless local-area network in which stations communicate through access points, although direct station-to-station modes and non-Wi-Fi wireless systems also exist.
The radio medium is shared and can extend beyond walls or property lines, so channel use, interference, coverage, capacity, mobility, and authentication all affect operation. In an 802.11 deployment, a device discovers a service, associates with it, and then obtains whatever network access its authentication, encryption, segmentation, and higher-layer policies permit.
Key points
Core componentsDocument access points, controllers, or management planes, antennas, channels, client stations, service-set configuration, wired uplinks, and identity or key-management dependencies.
Resilient designSurvey coverage and interference, plan capacity and roaming, separate administrative access, maintain firmware, detect unauthorized infrastructure, and test failure behavior.
Security controlsUse current authenticated encryption and appropriate enterprise or personal credentials, protect management traffic, isolate untrusted devices, and integrate admission with continuing authorization and monitoring.
Important limitationWireless is not inherently insecure, but radio coverage is not a physical security boundary. An SSID, strong signal, or successful association does not authenticate the operator, establish device health, or make subsequent traffic safe.