Mitigating ARP poisoning-based man-in-the-middle attacks in wired or wireless LAN

被引:6
作者
Nam, Seung Yeob [1 ]
Jurayev, Sirojiddin [1 ]
Kim, Seung-Sik [1 ]
Choi, Kwonhue [1 ]
Choi, Gyu Sang [1 ]
机构
[1] Yeungnam Univ, Dept Informat & Commun Engn, Gyongsan 712749, Gyeongbuk, South Korea
关键词
Mapping;
D O I
10.1186/1687-1499-2012-89
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
In this article, an enhanced version of address resolution protocol (ARP) is proposed to prevent ARP poisoning-based man-in-the-middle (MITM) attacks in wired or wireless LAN environments. The proposed mechanism is based on the idea that when a node knows the correct MAC address for a given IP address, if it does not delete the mapping while the machine is alive, then MITM attack is not possible for that IP address. In order to prevent MITM attack even for a new IP address, we propose a new IP/MAC mapping conflict resolution mechanism based on computational puzzle and voting. Our proposed scheme can efficiently mitigate ARP poisoning-based MITM attacks, even in Wi-Fi hot-spots where wireless machines can easily come and leave, since the proposed mechanism does not require manual configuration if the proposed ARP is deployed through operating system (OS) upgrade. The proposed scheme is backward compatible with the existing ARP protocol and incrementally deployable with benefits to the upgraded machines.
引用
收藏
页数:17
相关论文
共 20 条
  • [1] [Anonymous], GRAT ARP
  • [2] [Anonymous], 2003, HACKING UNIX TUTORIA
  • [3] Benvenuti C., 2006, Understanding Linux Network Internals
  • [4] Bhaiji Y., 2008, Network security technologies and solutions
  • [5] Computational puzzles as Sybil defenses
    Borisov, Nikita
    [J]. SIXTH IEEE INTERNATIONAL CONFERENCE ON PEER-TO-PEER COMPUTING, PROCEEDINGS, 2006, : 171 - 176
  • [6] S-ARP: a secure Address Resolution Protocol
    Bruschi, D
    Ornaghi, A
    Rosti, E
    [J]. 19TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 2003, : 66 - 74
  • [7] Chatzimisios P, 2003, GLOB TELECOMM CONF, P950
  • [8] Dwork C., 1993, Advances in Cryptology - CRYPTO '92. 12th Annual International Cryptology Conference Proceedings, P139
  • [9] Fleck B., Wireless Access Points and ARP Poisoning: Wireless Vulnerabilities that Expose the Wired Network
  • [10] Goyal V, 2005, LECT NOTES COMPUT SC, V3574, P40