【24h】

Detecting and Blocking Unauthorized Access in Wi-Fi Networks

机译:在Wi-Fi网络中检测和阻止未经授权的访问

获取原文
获取原文并翻译 | 示例

摘要

Academic and commercial 802.11 hotspots often use an SSL-secured captive portal to authenticate clients. Captive portals provide good usability and interoperability, but poor security. After a captive portal has authenticated a client, session hijacking and freeloading allow attackers to capture or use the client's session. Freeloading does not require special tools and, surprisingly, is strengthened by the (widely recommended) use of personal firewalls. We propose and evaluate novel defenses against these attacks, session id checking and MAC sequence number tracking, both of which are transparent to clients and do not require changes in client computers. Experiments demonstrate that the proposed defenses are effective against the mentioned attacks and have little overhead.
机译:学术和商业802.11热点通常使用受SSL保护的强制门户来对客户端进行身份验证。强制门户提供了良好的可用性和互操作性,但安全性较差。强制门户对客户端进行身份验证之后,会话劫持和免费加载使攻击者可以捕获或使用客户端的会话。 Freeload不需要特殊的工具,并且令人惊讶的是,(广泛建议)使用个人防火墙可以增强此功能。我们提出并评估针对这些攻击的新颖防御措施,会话ID检查和MAC序列号跟踪,这两种方法对客户端都是透明的,不需要更改客户端计算机。实验表明,所提出的防御措施能够有效地防御上述攻击,并且开销很小。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号