Novel method for proofing 802.11 wireless deauthentication frame flood DoS

A denial-of-service attack and de-authentication technology, applied in the field of new 802.11 wireless de-authentication frame flood denial-of-service attacks, can solve the problem that high attack rate de-authentication frame flood attacks cannot be effectively solved, and achieves the goal of improving the anti-denial-of-service attack performance. Effect

Active Publication Date: 2016-01-27
SANMING UNIV
View PDF2 Cites 3 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Therefore, the current version of the 802.11w method cannot effectively solve the deauthentication frame flood attack with a high attack rate

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Novel method for proofing 802.11 wireless deauthentication frame flood DoS
  • Novel method for proofing 802.11 wireless deauthentication frame flood DoS
  • Novel method for proofing 802.11 wireless deauthentication frame flood DoS

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0035] The present invention will be further described below in conjunction with the accompanying drawings and embodiments.

[0036] This embodiment provides a novel anti-802.11 wireless deauthentication frame flood denial of service attack method, such as figure 1 and image 3 shown, including the following steps:

[0037] Step S1: providing a queuing model based on 802.11 wireless client, the queuing model of the wireless client includes TCP / IP upper layer module, MMS-MDS module, STA_Air_TX module and STA_Air_RX module;

[0038] Step S2: The TCP / IP upper layer module of the wireless client sends the TCP data packet with λ 1 The rate is transferred to the MAC layer, and the TCP data frame in the TCP data packet waits for the processing of the MMS-MDS module successively in the MDS queue, and the processing time of the TCP data frame in the TCP data packet by the MMS-MDS module is S 3 ;

[0039] Step S3: When the wireless client is ready to send data frames for communica...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a novel method for proofing 802.11 wireless deauthentication frame flood DoS, and provides a queuing model based on a 802.11 wireless client. The queuing model includes a TCP / IP upper-layer module, an MMS-MDS module, an STA_Air_TX module, and an STA_Air_RX module. The TCP / IP upper-layer module of the wireless client sends TCP data frames to an MDS queue to successively wait for the processing of the MMS-MDS module; when the wireless client prepares to send the data frames for communication, the MMS-MDS module processes the TCP data frames and then forwards the TCP data frames to a TX queue, the STA_Air_TX module sends the TCP data frames to an access point AP; a Rogue Access Point (RAP) sends a deauthentication frame to the wireless client at a speed rate of lambda2, the STA_Air_TX module receives, verifies the deauthentication frame, and determines whether the deauthentication frame should be forwarded to an MMS queue or be directly and immediately abandoned; the STA_Air_TX module receives TCP-ACK and forwards the TCP-ACK to an MDS queue; and the MMS-MDS module completes the verification of the deauthentication frame within the time of S2. The method can prevent a Wireless Local Area Network (WLAN) from deauthentication DoS under low-attack and high-attack speed rates.

Description

technical field [0001] The invention relates to the technical field of denial-of-service attacks on wireless local area networks, in particular to a novel method for preventing 802.11 wireless deauthentication frame flood denial-of-service attacks. Background technique [0002] At present, denial of service attacks (Denial of Service: DoS) against wireless local area networks (WirelessLocalAreaNetwork: WLAN) are mainly caused by forged deauthentication frames (DeauthenticationFrame). In general, DoS attacks on WLANs can be divided into two categories. One category includes attacks against wireless access points (AccessPoint: AP), which include authentication frame floods and association frame floods. Another type of attack includes deauthentication frame flood attack, and their attack targets are wireless LAN clients (such as some notebook computers, tablet computers, and smart phones with WiFi wireless communication functions, etc.). In the present invention, we mainly so...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04W12/00H04W12/122
CPCH04L63/1458H04W12/00
Inventor 刘持标
Owner SANMING UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products