Method for resisting denial of service (DoS) attack for wireless local area network access authentication

A denial of service attack, wireless local area network technology, applied in the field of network technology security, can solve problems such as hidden security risks and imperfect DoS attack defense mechanisms, to avoid DoS attack threats, reduce the number of negotiations, and improve the effect of negotiation efficiency

Inactive Publication Date: 2010-07-14
XIDIAN UNIV
View PDF0 Cites 11 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0037] Recently, some researchers have proposed the method of using wireless modules to construct puzzles to resist DoS attacks of wireless access authentication, but it also brings some other security risks, and there is still a long way to go before it is practical.
Therefore, the defense mechanism of the existing wireless access authentication protocol to the DoS attack is still not perfect.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for resisting denial of service (DoS) attack for wireless local area network access authentication
  • Method for resisting denial of service (DoS) attack for wireless local area network access authentication
  • Method for resisting denial of service (DoS) attack for wireless local area network access authentication

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0059] refer to Figure 5 , the method for resisting denial of service attack in the access authentication process that the present invention provides, comprises the following steps:

[0060] In step 1, the user STA obtains the beacon frame issued by the AP through monitoring.

[0061] In the wireless network environment, the beacon frame is periodically sent by the access point AP using the broadcast mechanism, so the user can obtain the information elements in the beacon frame by monitoring without sending a request message to the access point AP. In the present invention, the information element of the beacon frame monitored by the user is modified on the basis of the original information element, and the parameters required for constructing the puzzle are added. In addition to the original information, it also includes the construction of the random number Ni, The difficulty level L and the Hash algorithm supported by the current AP.

[0062] The present invention modifi...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for resisting a denial of service (DoS) attack for a wireless access authentication protocol, which mainly solves the problem of DoS attack threat existing in the process of wireless access authentication of the traditional 802.11i protocol and the WAPI protocol. The method realizes the resistance on the DoS attack in the process of access authentication association by utilizing the combined use of a beacon frame issuing mechanism and a client-puzzle mechanism. The method comprises the following realizing steps of: (1) obtaining a beacon frame issued by an access point by a user in a monitoring way and obtaining the parameter needed for constructing a puzzle; (2) generating the puzzle and solving when the authentication interaction is finished; (3) containing the puzzle and the solution into an association request and transmitting the association request to the access point; and (4) judging whether the association process is finished or not by the access point through the authentication on the puzzle and the solution. The invention has stronger DoS attack resistance and adaptability and is suitable for the traditional wireless access authentication protocol.

Description

technical field [0001] The invention belongs to the field of network technology security, and specifically relates to a method for resisting denial of service DoS attacks in a wireless network environment, which can be used in a wireless local area network environment to reduce the impact of denial of service attacks on the access authentication process. technical background [0002] The main purpose of Denial of Service (DoS) attack is to make the service provided in the network lose availability. It is difficult to implement and has a high degree of harm. It is the biggest threat in the network at present. However, due to the openness of the Internet, it is impossible to prevent the existence of such attacks. Therefore, the goal of existing research is how to reduce the impact of DoS attacks on the network. [0003] Access security of wireless network has always been a hot research topic. Due to limitations of wireless network equipment and bandwidth resources, the acces...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04W12/06H04W12/08H04W24/04H04W12/069H04W12/126
Inventor 董庆宽李小平刘彦明高琳黎剑兵
Owner XIDIAN UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products