Gateway Device Unauthorized Wireless Access Point Detection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Organizations face security risks due to unauthorized wireless access points in their networks, which are often detected inefficiently using expensive and complex audit products, requiring technical expertise and leading to potential vulnerabilities.
Innovation Solution
A method implemented in a gateway device that uses virtual local area networks (VLANs) with known MAC addresses to authorize wireless devices, allowing only authorized access, and automatically detects unauthorized access points by examining packet source MAC addresses, taking remedial actions to prevent unauthorized access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If commercially available wireless audit products are used to detect unauthorized access points, then detection capability is improved, but device complexity and cost increase
Solution Approach 1:
The gateway device automatically performs detection of unauthorized access points by examining MAC addresses of wireless devices connecting to the network, eliminating the need for separate audit products. The system serves itself by integrating detection functionality into the existing gateway infrastructure.
Solution Approach 2:
The gateway device performs multiple functions including both network traffic routing and unauthorized access point detection. By combining these functions in a single device, the system eliminates the need for dedicated detection equipment while maintaining comprehensive security monitoring.
2Measurement precision
If wireless audit products are used for detection, then detection accuracy is improved, but ease of operation deteriorates due to training requirements
Solution Approach 1:
The system automatically detects and flags unauthorized access points without requiring manual configuration or interpretation by IT personnel. The gateway device autonomously compares MAC addresses against the whitelist and generates alerts, making the process as simple as deploying the whitelist.
Solution Approach 2:
The whitelist of authorized MAC addresses is prepared in advance, enabling the gateway device to immediately begin detection operations without requiring training or complex setup. This preliminary preparation simplifies ongoing operations significantly.
3Reliability
If a white list of MAC addresses is maintained, then detection reliability is improved, but loss of time increases due to maintenance requirements
Solution Approach 1:
The system provides feedback when unauthorized access points are detected, allowing IT personnel to update the whitelist accordingly. This feedback loop enables continuous improvement of detection accuracy while minimizing manual maintenance effort through event-driven updates.
4Device complexity
If manual detection methods are used, then device complexity is reduced, but productivity deteriorates due to manual walking and detection
Solution Approach 1:
The gateway device automatically and continuously monitors all wireless connection attempts on the network, eliminating the need for manual walking surveys. This automated approach provides continuous detection coverage without additional complexity to the network infrastructure.
Data Source
AI summary
Methods and apparatus for detecting, in a gateway device configured for facilitating communication between an intranet and an external network, the existence of an unauthorized wireless access point in the intranet. The method includes determining whether a packet received at the gateway originates from one of the wireless devices. If a received at the gateway originates from a wireless device, the method includes determining whether a source MAC address associated with the packet is one of the set of known MAC addresses. If not, the method further includes taking a remedial action to prevent the unauthorized wireless access point from accessing one of the intranet and the external network.


