作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (03): 169-171. doi: 10.3969/j.issn.1000-3428.2007.03.061

• 安全技术 • 上一篇    下一篇

基于802.11i四次握手协议的攻击分析与改进

王小军,陆建德   

  1. (苏州大学计算机科学与技术学院,苏州 215006)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-02-05 发布日期:2007-02-05

Analysis and Improvement Against the Attack on 4-way Handshaking Protocol of 802.11i

WANG Xiaojun, LU Jiande   

  1. (School of Computer Science and Technology, Soochow University, Suzhou 215006)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-02-05 Published:2007-02-05

摘要: 回顾与分析了无线局域网的新一代安全标准IEEE 802.11i与四次握手协议。结合对实际协议的分析,指出四次握手协议的缺陷及可能带来的攻击,针对802.11i建议的方案及其局限性和仍然可能存在的攻击,提出了TPTK随机丢弃队列、消息1身份认证的改进设计,并对改进设计进行了验证与分析。

关键词: WLAN, 802.11i, 802.1x, 四次握手协议, PTK

Abstract: This paper reviews and analyzes WLAN’s new generation of security standard IEEE 802.11i and the 4-way handshaking protocol. With the analysis to this practical protocol, the paper indicates the vulnerability on 4-way handshaking and the possible attack. After reviewing the proposed solution of 802.11i standard, the paper analyzes its incompletion and vulnerability, and gives out two schemes of improvement design, a TPTK random-drop queue to the supplicant, and adding authentication to the initial message. In the end, system validating and analysis are made.

Key words: WLAN, 802.11i, 802.1x, 4-way handshaking, PTK