使用puf的RADIUS服务器和接入点之间的共享密钥更新方案

JungSoo Park, Souhwan Jung
{"title":"使用puf的RADIUS服务器和接入点之间的共享密钥更新方案","authors":"JungSoo Park, Souhwan Jung","doi":"10.1109/CAIPT.2017.8320725","DOIUrl":null,"url":null,"abstract":"The existing AP and Radius Server used the SSK(Shared Secret Key) to authenticate the accounting messages between devices. This SSK had the vulnerability of easy exposure because of the lack of encryption and difficulty of administration for the AP and RADIUS Server due to the requirement of direct input by the administrator. After the SSK is exposed, a billing problem may be induced by sending a user's counterfeit accounting information which is possible by creating a Rouge AP with a forged MAC address and connecting to the server. This paper attempts to resolve this issue by creating SSK with the characteristic of Physical Uncloneable Functions (PUFs) and propose the method of periodic automatic update through the server. A more secure and powerful protocol will be provided by adding the PUF hardware to the AP which creates a non-duplicable key that not only protects the AP but also encrypts the message and additionally assures its integrity. Furthermore, the proposed protocol will have a centralized administration through batch updates and it will eliminate the inconvenience of the administrator which in existing methods required manually configuration of each SSK values in the AP and RADIUS server. Conclusively, this paper adds PUF to the protocol to protect the SSK with augmented security and proposes the centralized administration of the SSK value in replacement of the current administration method of direct input.","PeriodicalId":351075,"journal":{"name":"2017 4th International Conference on Computer Applications and Information Processing Technology (CAIPT)","volume":"37 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2017-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Shared secret key update scheme between RADIUS server and access point using PUFs\",\"authors\":\"JungSoo Park, Souhwan Jung\",\"doi\":\"10.1109/CAIPT.2017.8320725\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The existing AP and Radius Server used the SSK(Shared Secret Key) to authenticate the accounting messages between devices. This SSK had the vulnerability of easy exposure because of the lack of encryption and difficulty of administration for the AP and RADIUS Server due to the requirement of direct input by the administrator. After the SSK is exposed, a billing problem may be induced by sending a user's counterfeit accounting information which is possible by creating a Rouge AP with a forged MAC address and connecting to the server. This paper attempts to resolve this issue by creating SSK with the characteristic of Physical Uncloneable Functions (PUFs) and propose the method of periodic automatic update through the server. A more secure and powerful protocol will be provided by adding the PUF hardware to the AP which creates a non-duplicable key that not only protects the AP but also encrypts the message and additionally assures its integrity. Furthermore, the proposed protocol will have a centralized administration through batch updates and it will eliminate the inconvenience of the administrator which in existing methods required manually configuration of each SSK values in the AP and RADIUS server. Conclusively, this paper adds PUF to the protocol to protect the SSK with augmented security and proposes the centralized administration of the SSK value in replacement of the current administration method of direct input.\",\"PeriodicalId\":351075,\"journal\":{\"name\":\"2017 4th International Conference on Computer Applications and Information Processing Technology (CAIPT)\",\"volume\":\"37 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2017-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2017 4th International Conference on Computer Applications and Information Processing Technology (CAIPT)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/CAIPT.2017.8320725\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2017 4th International Conference on Computer Applications and Information Processing Technology (CAIPT)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CAIPT.2017.8320725","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

摘要

已有AP和Radius Server使用共享密钥(SSK)对设备间的计费消息进行认证。该SSK缺乏加密,AP和RADIUS服务器由于需要管理员直接输入而难以管理,存在容易暴露的漏洞。SSK暴露后,可能会通过发送用户伪造的计费信息而导致计费问题,这可以通过创建伪造MAC地址的Rouge AP连接到服务器来实现。本文试图通过创建具有物理不可克隆功能(puf)特征的SSK来解决这一问题,并提出了通过服务器进行周期性自动更新的方法。通过将PUF硬件添加到AP,将提供一个更安全、更强大的协议,该协议创建了一个不可复制的密钥,不仅可以保护AP,还可以加密消息,并额外确保其完整性。此外,提议的协议将通过批量更新进行集中管理,并且它将消除管理员的不便,因为在现有方法中,管理员需要手动配置AP和RADIUS服务器中的每个SSK值。最后,本文在协议中加入PUF,增强对SSK的安全性保护,并提出对SSK值进行集中管理,以取代目前直接输入的管理方式。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
Shared secret key update scheme between RADIUS server and access point using PUFs
The existing AP and Radius Server used the SSK(Shared Secret Key) to authenticate the accounting messages between devices. This SSK had the vulnerability of easy exposure because of the lack of encryption and difficulty of administration for the AP and RADIUS Server due to the requirement of direct input by the administrator. After the SSK is exposed, a billing problem may be induced by sending a user's counterfeit accounting information which is possible by creating a Rouge AP with a forged MAC address and connecting to the server. This paper attempts to resolve this issue by creating SSK with the characteristic of Physical Uncloneable Functions (PUFs) and propose the method of periodic automatic update through the server. A more secure and powerful protocol will be provided by adding the PUF hardware to the AP which creates a non-duplicable key that not only protects the AP but also encrypts the message and additionally assures its integrity. Furthermore, the proposed protocol will have a centralized administration through batch updates and it will eliminate the inconvenience of the administrator which in existing methods required manually configuration of each SSK values in the AP and RADIUS server. Conclusively, this paper adds PUF to the protocol to protect the SSK with augmented security and proposes the centralized administration of the SSK value in replacement of the current administration method of direct input.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Implementation of real-time static hand gesture recognition using artificial neural network Application of baby's nutrition status using Macromedia Flash Analysis of radio based train control system using LTE-R and analysis of security requirements: The security of the radio based train control system A study on the effective interaction method to improve the presence in social virtual reality game Expert system to optimize the best goat selection using topsis: Decision support system
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1