Browse > Article

A Study on Dynamic Key Management in Mixed-Mode Wireless LAN  

강유성 (한국전자통신연구원 정보보호연구단)
오경희 (한국전자통신연구원 정보보호연구)
정병호 (한국전자통신연구원 정보보호연구)
정교일 (한국전자통신연구원 정보보호연구)
양대헌 (인하대학교 정보통신대학원)
Abstract
The interest in wireless LAN security is on the increase owing to a role of high-speed wireless Internet infrastructure of wireless LAN. Wi-Fi has released WPA standard in order to overcome drawbacks of WEP algorithm that is security element of current IEEE 802.11-based wireless LAN system. Pairwise key management and group key management in a mixed-mode which supports both terminals running WPA and terminals running original WEP security are very complicate. In this paper, we analyze flaws in WPA authenticator key management state machine for key distribution and propose the countermeasures to overcome the analyzed problems. Additionally, WPA authenticator key management state machine to which the solutions are applied is described. The reconstructed WPA authenticator key management state machine helps the AP perform efficiently group key exchange and group key update in the mixed-mode.
Keywords
mixed-mode wireless LAN; key management; wireless LAN security; WPA;
Citations & Related Records
연도 인용수 순위
  • Reference
1 /
[] / Wi-Fi Protected Access
2 /
[ Wi-Fi Alliance ] / Wi-Fi Protected Access (WPA) Version 2.0
3 Standard for Local and metropolitan area networks- Port-Based Network Access Control /
[ IEEE ] / IEEE Std 802.1X
4 Unsafe at any key size; An analysis of the WEP encapsulation /
[ J.R.Walker ] / IEEE 802.11-00/362
5 Your 802.11 Wireless Network has No Clothes /
[ W.A.Arbaugh;N.Shankar;Y.C.Justin Wan ] / Proceedings of the First IEEE International Conference on Wireless LANs and Home Networks
6 Recommended Practice for Multi-Vendor Access Point Interoperability via an Inter-Access Point Protocol Across Distribution Systems Supporting /
[ IEEE ] / IEEE Std 802.11f/D5
7 Standard for Local and metropolitan area networks- Port-Based Network Access Control- Amendment 1; Technical and Editorial Corrections /
[ IEEE ] / IEEE P802.1aa/D6.1
8 PPP Extensible Authentication Protocol (EAP) /
[ L.Blunk;J.Vollbrecht ] / IETF, RFC 2284
9 Microsoft Point-To-Point Encryption (MPPE0 Protocol /
[ G.Pall;G.Zorn ] / IETF, RFC 3078
10 Remote Authentication Dial In User Service (RADIUS) /
[ C.Rigney ] / IETF, RFC 2865
11 LAN/MAN Specific Requirements- Part 11: Wireless Medium Access Control (MAC) and physical layer (PHY) specification: Specification for Enhanced Security /
[ IEEE ] / IEEE Std 802.11i/D3.0
12 IEEE 802.1X Pre-Authentication /
[ B.Aboba ] / IEEE 802.11-02/389r1
13 PPP EAP TLS Authentication Protocol /
[ B.Aboba;D.Simon ] / IETF, RFC 2716
14 Wireless LAN Medium Access Control(MAC) and Physical Layer (PHY) specifications /
[ ISO/IEC ] / ISO/IEC 8802-11 ANSI/IEEE Std 802.11