순번을 이용한 고속의 안전한 무선 랜 2-Way 핸드쉐이크 기법

Fast and Secure 2-Way Handshake Mechanism using Sequence Number in Wireless LAN

  • 발행 : 2009.09.30

초록

본 논문은 IEEE 802.11i의 4-Way 핸드쉐이크의 취약점을 분석하고, 고속의 안전한 2-Way 핸드쉐이크 방식을 제안한다. PTK 생성에서 난수 대신에 순번(Sequence Number)을 사용하여, 재생공격, DoS 공격을 방지한다. 또한 Re-association Request 프레임과 Re-association Response 프레임을 변형하여 MS(Mobile Station)과 AP(Access Point) 사이의 상호 인증과, PTK(Pairwise Transient Key)의 도출을 가능하게 하여, 전송되는 메시지의 개수를 감소시켜, 4-Way 핸드쉐이크보다 고속의 핸드오프 방식을 제안한다. 그리고 고속의 안전한 핸드오프를 제안하는 기존의 기법들과 비교 분석한다.

In this paper, we analyze security weakness of 4-Way Handshake in IEEE 802.11i and propose fast and secure 2-Way Handshake mechanism. Compute PTK(Pairwise Transient Key) using sequence number instead of random numbers in order to protect Replay attack and DoS attack. Also, proposed 2-Way Handshake mechanism can mutual authenticate between mobile station and access point and derive PTK using modified Re-association Request and Re-association Response frames. And, compare with others which are fast and secure Handoff mechanisms.

키워드

참고문헌

  1. IEEE 802.11, Wireless LAN Medium Access Control(MAC) and Physical Layer(PHY) specifications, IEEE Standard, 2007.
  2. IEEE 802.11i, Wireless LAN Medium Access Control (MAC) and Physical Layer (PHY) specifications : Medium Access Control(MAC) Security Enhancements, IEEE Standard, 2004
  3. Arunesh Mishra, Min-ho Shin and William A. Arbaugh, "Pro-active Key Distribution using Neighbor Graphs," IEEE Wireless Communications, vol. 11, 2004.
  4. C. He and C. Mitchell, "Analysis of the 802.11i 4-way Handshake," Proceedings of the ACM Workshop on Wireless Security, pp. 43-50, 2004.
  5. Changhua He, John C. Mitchell. "Security analysis and improvements for IEEE 802.11i," The 12th Annual Network and Distributed System Security Symposium (NDSS'05), pp. 90-110, 2005.
  6. Junbeom Hur, Chanil Park, Young-joo Shin and Hyunsoo Yoon, "An Efficient Proactive Key Distribution Scheme for Fast Handoff in IEEE 802.11 Wireless Networks," ICOIN 2007: pp. 629-638, 2007.
  7. Manivannan N, Neelameham P. "Alternative Pair-wise Key Exchange Protocols(IEEE 802.11i) in Wireless LANs," in Proc, of International Conference on Wireless and Mobile Communications(ICWMC06), pp. 52- 58, 2006.
  8. Jing Liu, Xinming Ye, Jun Zhang and Jun Li "Security Verification of 802.11i 4-Way Handshake Protocol," Communications, 2008. ICC '08. IEEE International Conference on, pp. 1642-1647, 2008.
  9. IEEE 802.11w, Draft Standard, Wireless LAN Medium Access Control(MAC) and Physical Layer (PHY) specifications Amendment 4: Protected Management Frames, IEEE Standard, 2008.