首页> 外文会议>IEEE International Conference on Communications >Performance of an Efficient Performing Authentication to obtain access to Public Wireless LAN with a Cache table
【24h】

Performance of an Efficient Performing Authentication to obtain access to Public Wireless LAN with a Cache table

机译:使用缓存表获取对公共无线LAN的访问权限的高效性能

获取原文

摘要

Currently, Wireless LAN (WLAN) service is widely deployed to provide high speed wireless Internet access through the mobile stations such as notebook and PDA. To provide enhanced security and user access control in the public WLAN area, WLAN access points should have the capability of IEEE 802.1x-based user authentication and authorization functionality. In this paper, we provide a brief understanding of IEEE 802.1x standards and related protocols like EAPOL (Extended Authentication Protocol Over LAN), EAP, RADIUS and describe how the IEEE 802.1x is designed and implemented in our embedded linux-based WLAN AP which is named i-WiNG. (Intelligent Wireless Internet Gateway). And we present an efficient authentication proxy for IEEE 802.1x systems based on the port-based access control mechanism. The proxy function of the AP is allowed to cache the supplicant's user ID and password during his first transaction with the server. For the next authentication procedure of the same supplicant, the proxy function of the AP handles the authentication transactions using its cache on behalf of the authentication server. Since the main authentication server handles only the first authentication transaction of each supplicant, the processing load of the server can be reduced. Also, the authentication transaction delay experienced by a supplicant can be decreased compared with the conventional IEEE 802.1x systems. Therefore, the data traffic related to the authentication that has occurred in the backbone network can be considerably reduced to improve the speed of data transmission to the user of the high speed wireless Internet service. Further, in case of a small-scale network, it is possible to save a cost for operating an authentication server using an authentication table.
机译:目前,无线LAN(WLAN)服务被广泛部署,以通过诸如笔记本电脑和PDA等移动站提供高速无线互联网接入。为了在公共WLAN区域提供增强的安全性和用户访问控制,WLAN接入点应该具有基于IEEE 802.1x的用户身份验证和授权功能的能力。在本文中,我们简要了解IEEE 802.1x标准和相关协议,如EAPOL(局域网上的扩展认证协议),EAP,RADIUS,并描述了IEEE 802.1x的设计和实现了基于Linux的WLAN AP的方式被命名为I-Wing。 (智能无线互联网网关)。并且我们基于基于端口的访问控制机制的IEEE 802.1x系统为IEEE 802.1x系统提供了高效的认证代理。允许AP的代理功能在他的第一个交易中缓存提供者的用户ID和密码。对于同一请求者的下一个认证过程,AP的代理功能使用其缓存代表认证服务器处理身份验证事务。由于主要认证服务器仅处理每个请求者的第一认证事务,因此可以减少服务器的处理负荷。而且,与传统的IEEE 802.1x系统相比,可以减少由请求者经历的认证事务延迟。因此,可以显着减少与骨干网络中发生的认证相关的数据流量,以提高到高速无线互联网服务的用户的数据传输的速度。此外,在小规模网络的情况下,可以使用认证表来节省用于操作认证服务器的成本。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号