Development of device identity using WiFi layer 2 management frames for combating Rogue APs
Development of device identity using WiFi layer 2 management frames for combating Rogue APs
复制标题
使用 WiFi 第 2 层管理帧开发设备身份以打击恶意 AP
DOI:
--
复制
发表时间:
2013
期刊:
影响因子:
--
通讯作者:
A. Marshall
中科院分区:
文献类型:
--
作者:
J. Milliken;Valerio Selis;K. Yap;A. Marshall
The susceptibility of WiFi networks to Rogue Access Point attacks derives from the lack of identity for 802.11 devices. The most common means of detecting these attacks in current research is through tracking the credentials or the location of unauthorised and possibly malicious APs. In this paper, the authors outline a method of distinguishing WiFi Access Points using 802.11 MAC layer management frame traffic profiles. This system does not require location estimation or credential tracking techniques as used in current research techniques, which are known to be inaccurate. These characteristic management traffic profiles are shown to be unique for each device, tantamount to a MAC identity. The application of this technique to solving Rogue AP attacks under the constraints of an open access, public WiFi environment is discussed with the conclusion that the identity is practically very difficult to forge.