首页> 外文会议>International Conference on Wireless Communications and Mobile Computing >An enhanced secure ARP protocol and LAN switch for preveting ARP based attacks
【24h】

An enhanced secure ARP protocol and LAN switch for preveting ARP based attacks

机译:一种增强的安全ARP协议和LAN开关,用于防止基于ARP的攻击

获取原文

摘要

After the ARP protocol was drafted, a subtle weakness in the protocol was discovered. In fact, ARP provides no means to establish the authenticity of the source of incoming ARP packets. That's why any host of a LAN network can forge an ARP message containing malicious information to poison the ARP caches of target hosts. This lack of authentication mechanisms has made ARP vulnerable to a raft of IP-based impersonation, Man-in-the-Middle (MiM) and DoS attacks. In this paper we discuss a security solution to solve the ARP vulnerabilities and authenticity issues. For that purpose, a novel secure extended ARP protocol is proposed. In addition, the LAN switch has been enhanced to assume the role of "Trusted Authority" and assure the hosts authentication while exchanging ARP messages.
机译:起草ARP议定书后,发现了议定书中的微妙弱点。实际上,ARP不提供建立传入ARP数据包来源的真实性的方法。这就是为什么任何局域网网络都可以伪造一个包含恶意信息的ARP消息来毒害目标主机的ARP缓存。这种缺乏认证机制使ARP容易受到基于IP的巨大鲁莽,中间人(MIM)和DOS攻击的筏子。在本文中,我们讨论了解决ARP漏洞和真实性问题的安全解决方案。为此目的,提出了一种新的安全扩展ARP协议。此外,LAN交换机已得到增强,以假设“可信任权限”的作用,并在交换ARP消息时确保主机身份验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号