首页> 外文OA文献 >Dynamic assignment of eduroam users to separate virtual lans
【2h】

Dynamic assignment of eduroam users to separate virtual lans

机译:将eduroam用户动态分配给单独的虚拟局域网

摘要

The aim of the diploma thesis was to thoroughly study the eduroam network, which is, with its authentication and authorisation mechanisms, considered a secure service. However, the network lacks mechanisms to protect the logged-in users from malicious users on the same network. Security vulnerability as a result of insecure protocols of eduroam may result in any malicious user being able to access other users' confidential information. After having set up a test network identical to eduroam, we successfully tested it with some attacks on the Data Link layer. Finally, we provide a solution to enhance security, by separating the users into individual sub networks using VLANs and consequently preventing the attacks on Data Link layer.
机译:文凭论文的目的是彻底研究eduroam网络,该网络具有其身份验证和授权机制,被认为是安全的服务。但是,网络缺乏保护登录用户免受同一网络上恶意用户攻击的机制。由于eduroam协议不安全而导致的安全漏洞可能导致任何恶意用户都能够访问其他用户的机密信息。建立与eduroam相同的测试网络后,我们在数据链路层上进行了一些攻击,成功地对其进行了测试。最后,我们提供了一种增强安全性的解决方案,方法是将用户划分为使用VLAN的单个子网,从而防止对数据链路层的攻击。

著录项

  • 作者

    Dolničar Marko;

  • 作者单位
  • 年度 2013
  • 总页数
  • 原文格式 PDF
  • 正文语种 {"code":"sl","name":"Slovene","id":39}
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号