When it comes to connecting internet of things (IoT) devices, there is a wide variety of networks to choose from, each with its own set of capabilities, advantages and disadvantages, and ideal use cases. Good ol\u2019 Wi-Fi is often seen as a default networking choice, available in many places, but of limited range and not particularly suited for IoT implementations.\nAccording to Aerohive Networks, however, Wi-Fi is \u201cevolving to help IT address security complexities and challenges associated with IoT devices.\u201d Aerohive sells cloud-managed networking solutions and was acquired recently by software-defined networking company Extreme Networks for some $272 million. And Aerohive's director of product marketing, Mathew Edwards, told me via email that Wi-Fi brings a number of security advantages compared to other IoT networking choices.\n\nIt\u2019s not a trivial problem. According to Gartner, in just the last three years, approximately one in five organizations have been subject to an IoT-based attack. And as more and more IoT devices come on line, the attack surface continues to grow quickly.\nWhat makes Wi-Fi more secure for IoT?\nWhat exactly are Wi-Fi\u2019s IoT security benefits? Some of it is simply 20 years of technological maturity, Edwards said.\n\u201cExtending beyond the physical boundaries of organizations, Wi-Fi has always had to be on the front foot when it comes to securely onboarding and monitoring a range of corporate, guest, and BYOD devices, and is now prepared with the next round of connectivity complexities with IoT,\u201d he said.\nSpecifically, Edwards said, \u201cWi-Fi has evolved \u2026 to increase the visibility, security, and troubleshooting of edge devices by combining edge security with centralized cloud intelligence.\u201d\nJust as important, though, new Wi-Fi capabilities from a variety of vendors are designed to help identify and isolate IoT devices to integrate them into the wider network while limiting the potential risks. The goal is to incorporate IoT device awareness and protection mechanisms to prevent breaches and attacks through vulnerable headless devices. Edwards cited Aerohive\u2019s work to \u201csecurely onboard IoT devices with its PPSK (private pre-shared key) technology, an authentication and encryption method providing 802.1X-equivalent role-based access, without the equivalent management complexities.\u201d\nThe IoT is already here\u2014and so is Wi-Fi\nUnfortunately, enterprise IoT security is not always a carefully planned and monitored operation.\n\u201cMuch like BYOD,\u201d Edwards said, \u201cmany organizations are dealing with IoT without them even knowing it.\u201d On the plus side, even as \u201cIoT devices have infiltrated many networks , ... administrators are already leveraging some of the tools to protect against IoT threats without them even realizing it.\u201d\nHe noted that customers who have already deployed PPSK to secure guest and BYOD networks can easily extend those capabilities to cover IoT devices such as \u201csmart TVs, projectors, printers, security systems, sensors and more.\u201d\nIn addition, Edwards said, \u201cvendors have introduced methods to assign performance and security limits through context-based profiling, which is easily extended to IoT devices once the vendor can utilize signatures to identify an IoT device.\u201d\nOnce an IoT device is identified and tagged, Wi-Fi networks can assign it to a particular VLAN, set minimum and maximum data rates, data limits, application access, firewall rules, and other protections. That way, Edwards said, \u201cif the device is lost, stolen, or launches a DDoS attack, the Wi-Fi network can kick it off, restrict it, or quarantine it.\u201d\nWi-Fi still isn\u2019t for every IoT deployment\nAll that hardly turns Wi-Fi into the perfect IoT network. Relatively high costs and limited range mean it won\u2019t find a place in many large-scale IoT implementations. But Edwards says Wi-Fi\u2019s mature identification and control systems can help enterprises incorporate new IoT-based systems and sensors into their networks with more confidence.