【24h】

Securing the Wireless LANs Against Internal Attacks

机译:保护无线局域网免受内部攻击

获取原文
获取原文并翻译 | 示例

摘要

Deploying wireless LANs (WLAN) at large scale is mainly affected by reliability, availability, performance, and security. These parameters will be a concern for most of managers who want to deploy WLANs. Most importantly, the security issue became the predominant factor in WLAN design. Different Intrusion detection mechanisms have been addressed in research papers, but with little being focused on internal intrusion and prevention. In this paper an efficient security method has been proposed. It is based on detecting rogue access points as well as rogue bridge access points and denying their access to the WLAN. In addition a new method of mutual authentication between DHCP server at the AP and wireless client has been introduced. This would allow client to detect rogue DHCP server and stop the association with it. It also allows registered DHCP server to detect unauthorized client and deny its request. Moreover the DHCP server would synchronize with the AP or intelligent LAN switch to drop packets from unauthorized client who might use static IP to get access to the network.
机译:大规模部署无线局域网(WLAN)主要受可靠性,可用性,性能和安全性的影响。这些参数将是大多数想要部署WLAN的管理人员关注的问题。最重要的是,安全问题已成为WLAN设计中的主要因素。研究论文已经讨论了不同的入侵检测机制,但很少关注内部入侵和预防。本文提出了一种有效的安全方法。它基于检测恶意接入点以及恶意网桥接入点并拒绝其访问WLAN。此外,还引入了一种新的AP上的DHCP服务器与无线客户端之间的相互身份验证方法。这将允许客户端检测恶意DHCP服务器并停止与之的关联。它还允许注册的DHCP服务器检测未授权的客户端并拒绝其请求。而且,DHCP服务器将与AP或智能LAN交换机同步,以丢弃来自未授权客户端的数据包,这些未经授权的客户端可能使用静态IP来访问网络。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号