Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks

碩士 === 國立交通大學 === 理學院碩士在職專班網路學習學程 === 94 === IEEE 802.11 network is prevailing, but the security issue is an important concern. WEP is the security mechanism in 802.11 specification. It has been proved that WEP is vulnerable and easy to be cracked. 802.11i is the enhanced version of security for 802...

Full description

Bibliographic Details
Main Authors: Hsien-Te Chien, 簡先得
Other Authors: Wen-Nung Tsai
Format: Others
Language:en_US
Online Access:http://ndltd.ncl.edu.tw/handle/19629260112231311789
id ndltd-TW-094NCTU5726033
record_format oai_dc
spelling ndltd-TW-094NCTU57260332016-05-27T04:18:55Z http://ndltd.ncl.edu.tw/handle/19629260112231311789 Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks 以隨機位元認證機制抵禦802.11無線網路阻絶式攻擊 Hsien-Te Chien 簡先得 碩士 國立交通大學 理學院碩士在職專班網路學習學程 94 IEEE 802.11 network is prevailing, but the security issue is an important concern. WEP is the security mechanism in 802.11 specification. It has been proved that WEP is vulnerable and easy to be cracked. 802.11i is the enhanced version of security for 802.11 networks. The 802.11i focuses on integrity and confidentiality of transmitting data. The availability of 802.11 network is not considered properly. The management frames of 802.11 are not protected by any key based authentication. It causes the 802.11 network vulnerable to Denial of Service attacks. We designed a so called random bit authentication mechanism to defend Denial of Service attacks against 802.11 networks. We replace some unused bits in the MAC header of the 802.11 management frames with some authentication bits. The AP and STA can authenticate each other according to these authentication bits. We also exploited the characteristic of Sequence Number field in MAC header of the 802.11 frames to design an effective mechanism to filter out attacking frames. In our implementation and experiments, it shows that our two-phase filtering mechanism is effective and lightweight to defend IEEE 802.11 Denial of Service attacks. Wen-Nung Tsai 蔡文能 學位論文 ; thesis 75 en_US
collection NDLTD
language en_US
format Others
sources NDLTD
description 碩士 === 國立交通大學 === 理學院碩士在職專班網路學習學程 === 94 === IEEE 802.11 network is prevailing, but the security issue is an important concern. WEP is the security mechanism in 802.11 specification. It has been proved that WEP is vulnerable and easy to be cracked. 802.11i is the enhanced version of security for 802.11 networks. The 802.11i focuses on integrity and confidentiality of transmitting data. The availability of 802.11 network is not considered properly. The management frames of 802.11 are not protected by any key based authentication. It causes the 802.11 network vulnerable to Denial of Service attacks. We designed a so called random bit authentication mechanism to defend Denial of Service attacks against 802.11 networks. We replace some unused bits in the MAC header of the 802.11 management frames with some authentication bits. The AP and STA can authenticate each other according to these authentication bits. We also exploited the characteristic of Sequence Number field in MAC header of the 802.11 frames to design an effective mechanism to filter out attacking frames. In our implementation and experiments, it shows that our two-phase filtering mechanism is effective and lightweight to defend IEEE 802.11 Denial of Service attacks.
author2 Wen-Nung Tsai
author_facet Wen-Nung Tsai
Hsien-Te Chien
簡先得
author Hsien-Te Chien
簡先得
spellingShingle Hsien-Te Chien
簡先得
Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
author_sort Hsien-Te Chien
title Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
title_short Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
title_full Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
title_fullStr Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
title_full_unstemmed Using Random Bit Authentication to Defend IEEE 802.11 DoS Attacks
title_sort using random bit authentication to defend ieee 802.11 dos attacks
url http://ndltd.ncl.edu.tw/handle/19629260112231311789
work_keys_str_mv AT hsientechien usingrandombitauthenticationtodefendieee80211dosattacks
AT jiǎnxiāndé usingrandombitauthenticationtodefendieee80211dosattacks
AT hsientechien yǐsuíjīwèiyuánrènzhèngjīzhìdǐyù80211wúxiànwǎnglùzǔjuéshìgōngjī
AT jiǎnxiāndé yǐsuíjīwèiyuánrènzhèngjīzhìdǐyù80211wúxiànwǎnglùzǔjuéshìgōngjī
_version_ 1718283575005020160