DocumentCode :
1618682
Title :
Security Verification of 802.11i 4-Way Handshake Protocol
Author :
Liu, Jing ; Ye, Xinming ; Zhang, Jun ; Li, Jun
Author_Institution :
Inst. of Comput. Technol., Chinese Acad. of Sci., Beijing
fYear :
2008
Firstpage :
1642
Lastpage :
1647
Abstract :
Key management is a significant part of secure wireless communication. In IEEE 802. Hi standard, 4-way handshake protocol is designed to exchange key materials and generate a fresh pairwise key for subsequent data transmissions between the mobile supplicant and the authenticator. Due to several design flaws, original 4-way handshake protocol cannot provide satisfying security and performance. In this study, we adopt formal specification and verification methods to analyze the 4-way handshake protocol. We give its formal models utilizing two kinds of High-level Petri Nets. Based on these formal models, we use two verification methods, model checking and insecure states deduction, to perform an integrated security verification process. The verification results confirm that the 4- way handshake protocol is vulnerable to Denial-of-Service attack during handshake. To repair such vulnerability, we propose an improved key management scheme named enhanced two-way handshake protocol. According to security analysis and performance evaluation, our proposal could provide stronger security capability and cost less computation and communication time.
Keywords :
Petri nets; protocols; telecommunication network management; telecommunication security; wireless LAN; 4-way handshake protocol; IEEE 802.11 standard; authenticator; data transmissions; denial-of-service attack; high-level Petri nets; integrated security verification process; key management; mobile supplicant; wireless communication. Security Verification; Computational efficiency; Computer crime; Data communication; Data security; Formal specifications; Performance analysis; Petri nets; Proposals; Protocols; Wireless communication;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Communications, 2008. ICC '08. IEEE International Conference on
Conference_Location :
Beijing
Print_ISBN :
978-1-4244-2075-9
Electronic_ISBN :
978-1-4244-2075-9
Type :
conf
DOI :
10.1109/ICC.2008.317
Filename :
4533353
Link To Document :
بازگشت