Password-based authentication in wireless LAN

Authentication in wireless LAN can prevent unauthorized parties from gaining access to the network. Preliminary authentication mechanism specified in IEEE 802.11 standard was compromised as the consequence of WEP vulnerabilities. Thus, the wireless LAN enhanced security task group and IETF have intr...

Full description

Saved in:
Bibliographic Details
Main Author: Gan, Hock Lai
Format: Thesis
Language:en
Published: 2005
Subjects:
Online Access:http://eprints.utm.my/5301/1/GanHockLaiMFKE2006.pdf
http://eprints.utm.my/5301/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1845471341504888832
author Gan, Hock Lai
author_facet Gan, Hock Lai
author_sort Gan, Hock Lai
building UTM Library
collection Institutional Repository
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
continent Asia
country Malaysia
description Authentication in wireless LAN can prevent unauthorized parties from gaining access to the network. Preliminary authentication mechanism specified in IEEE 802.11 standard was compromised as the consequence of WEP vulnerabilities. Thus, the wireless LAN enhanced security task group and IETF have introduced the IEEE 802.1X port based network access control and Extensible Authentication Protocol (EAP) to secure wireless LAN authentication session. Re-authentication is another critical issue when a supplicant roams to the neighbouring access point. To retain secure communication session and especially in real time applications, the handoff process must be done within the specified time defined by ITU [50]. The objective of the research is two fields; to propose a password-based public key authentication method and to refine the roaming key management in Inter Access Point Protocol (IAPP) with proactive caching approach for fast and secure handoff process. The proposed authentication method fulfills the mandatory requirements of EAP method for wireless LAN [29]. The authentication methods are compared from the aspects of performance, security and usability. Compared to pre-authentication and proactive key distribution method, the refinement on hand off method provides comparable performance and security with lower computational cost. An experimental test bed was setup to compare the efficiency of the proposed authentication method. The result shows that the proposed authentication execution can be completed at 295ms compared to existing methods like TLS which needs over 1000ms. For hand off process, the result still could not meet the time constraint due to the research scope is only covered roaming key management. Besides, password-based authentication method is inherently ease to deploy, manage and is user friendly.
format Thesis
id my.utm.eprints-5301
institution Universiti Teknologi Malaysia
language en
publishDate 2005
record_format eprints
spelling my.utm.eprints-53012020-07-22T04:03:32Z http://eprints.utm.my/5301/ Password-based authentication in wireless LAN Gan, Hock Lai TK Electrical engineering. Electronics Nuclear engineering Authentication in wireless LAN can prevent unauthorized parties from gaining access to the network. Preliminary authentication mechanism specified in IEEE 802.11 standard was compromised as the consequence of WEP vulnerabilities. Thus, the wireless LAN enhanced security task group and IETF have introduced the IEEE 802.1X port based network access control and Extensible Authentication Protocol (EAP) to secure wireless LAN authentication session. Re-authentication is another critical issue when a supplicant roams to the neighbouring access point. To retain secure communication session and especially in real time applications, the handoff process must be done within the specified time defined by ITU [50]. The objective of the research is two fields; to propose a password-based public key authentication method and to refine the roaming key management in Inter Access Point Protocol (IAPP) with proactive caching approach for fast and secure handoff process. The proposed authentication method fulfills the mandatory requirements of EAP method for wireless LAN [29]. The authentication methods are compared from the aspects of performance, security and usability. Compared to pre-authentication and proactive key distribution method, the refinement on hand off method provides comparable performance and security with lower computational cost. An experimental test bed was setup to compare the efficiency of the proposed authentication method. The result shows that the proposed authentication execution can be completed at 295ms compared to existing methods like TLS which needs over 1000ms. For hand off process, the result still could not meet the time constraint due to the research scope is only covered roaming key management. Besides, password-based authentication method is inherently ease to deploy, manage and is user friendly. 2005-12 Thesis NonPeerReviewed application/pdf en http://eprints.utm.my/5301/1/GanHockLaiMFKE2006.pdf Gan, Hock Lai (2005) Password-based authentication in wireless LAN. Masters thesis, Universiti Teknologi Malaysia, Faculty of Electrical Engineering.
spellingShingle TK Electrical engineering. Electronics Nuclear engineering
Gan, Hock Lai
Password-based authentication in wireless LAN
title Password-based authentication in wireless LAN
title_full Password-based authentication in wireless LAN
title_fullStr Password-based authentication in wireless LAN
title_full_unstemmed Password-based authentication in wireless LAN
title_short Password-based authentication in wireless LAN
title_sort password-based authentication in wireless lan
topic TK Electrical engineering. Electronics Nuclear engineering
url http://eprints.utm.my/5301/1/GanHockLaiMFKE2006.pdf
http://eprints.utm.my/5301/
url_provider http://eprints.utm.my/