{"title":"SWAN: a secure wireless LAN architecture","authors":"M. Virendra, S. Upadhyaya","doi":"10.1109/LCN.2004.120","DOIUrl":null,"url":null,"abstract":"Existing wireless LAN (WLAN) security schemes are few and product specific. While there exist some schemes for information integrity related problems, there are few standard solutions for quality of service and network health maintenance related problems in wireless networks. In this paper we propose an architecture model for secure WLAN that is generic in its design, so that it can easily be incorporated into existing systems at low cost, thus making it feasible and easy to implement. Our secure wireless LAN (SWAN) architecture first describes an admission control mechanism and deals with intrusion detection, malicious behavior detection, and maintaining quality of service and network health. We then introduce a novel infrastructure for an ad-hoc migration scheme (IAMS) to deal with denial of service (DOS) attacks on WLAN, and describe a unique traffic distribution protocol (TDP) for routing traffic when an access point is under attack, thus ensuring network survivability in the case of a DOS attack. We simulate the IAMS and the TDP using the network simulator GloMoSim.","PeriodicalId":366183,"journal":{"name":"29th Annual IEEE International Conference on Local Computer Networks","volume":"34 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2004-11-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"11","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"29th Annual IEEE International Conference on Local Computer Networks","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/LCN.2004.120","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 11
Abstract
Existing wireless LAN (WLAN) security schemes are few and product specific. While there exist some schemes for information integrity related problems, there are few standard solutions for quality of service and network health maintenance related problems in wireless networks. In this paper we propose an architecture model for secure WLAN that is generic in its design, so that it can easily be incorporated into existing systems at low cost, thus making it feasible and easy to implement. Our secure wireless LAN (SWAN) architecture first describes an admission control mechanism and deals with intrusion detection, malicious behavior detection, and maintaining quality of service and network health. We then introduce a novel infrastructure for an ad-hoc migration scheme (IAMS) to deal with denial of service (DOS) attacks on WLAN, and describe a unique traffic distribution protocol (TDP) for routing traffic when an access point is under attack, thus ensuring network survivability in the case of a DOS attack. We simulate the IAMS and the TDP using the network simulator GloMoSim.