Rogue AP Detection via Server Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing electronic devices connecting to wireless networks are vulnerable to rogue Access Points (APs) that can compromise user information, as they lack effective methods to distinguish between legitimate and illegitimate APs, leading to potential hacking and data exposure.
Innovation Solution
A method and electronic device configuration that involves transmitting AP information for wireless LAN connections to an Internet server to inquire about rogue APs, maintaining connections to legitimate APs, and providing other AP information to the server, enabling the server to identify and warn against or disconnect from rogue APs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If the electronic device connects to the AP with the highest receive signal level, then the connection quality is improved, but the device may connect to a rogue AP causing security vulnerabilities
Solution Approach 1:
The system performs preliminary verification by sending a request message to an internet server before establishing a connection. The server checks whether the AP is legitimate or rogue based on pre-stored information, and only then does the device proceed to connect, preventing connection to harmful APs while ensuring connection quality
Solution Approach 2:
An internet server acts as an intermediary between the electronic device and the AP. The server receives AP information from the device, verifies its legitimacy, and provides authentication results. This intermediary layer enables secure connection establishment without compromising connection quality
2Object-affected harmful factors
If the device verifies AP legitimacy through an internet server, then security is improved, but the connection establishment time increases
Solution Approach 1:
The system performs only the essential verification step by sending a request message to the server and receiving a response. This partial verification approach provides sufficient security protection while minimizing the time overhead, avoiding excessive verification procedures that would significantly delay connection establishment
Data Source
AI summary
An Access Point (AP) connection method in an electronic device and the electronic device thereof are provided. The method includes transmitting a request message relating to AP information connected for wireless Local Area Network (LAN) connection and inquiring about a rogue AP, to an Internet server, when the AP is not the rogue AP according to a response message received from the Internet server, maintaining connection to the AP, and providing other AP information to the Internet server.


