• DocumentCode
    1312080
  • Title

    A Timing-Based Scheme for Rogue AP Detection

  • Author

    Hao Han ; Bo Sheng ; Tan, Chiu C. ; Qun Li ; Sanglu Lu

  • Author_Institution
    Dept. of Comput. Sci., Coll. of William & Mary, Williamsburg, VA, USA
  • Volume
    22
  • Issue
    11
  • fYear
    2011
  • Firstpage
    1912
  • Lastpage
    1925
  • Abstract
    This paper considers a category of rogue access points (APs) that pretend to be legitimate APs to lure users to connect to them. We propose a practical timing-based technique that allows the user to avoid connecting to rogue APs. Our detection scheme is a client-centric approach that employs the round trip time between the user and the DNS server to independently determine whether an AP is a rogue AP without assistance from the WLAN operator. We implemented our detection technique on commercially available wireless cards to evaluate their performance. Extensive experiments have demonstrated the accuracy, effectiveness, and robustness of our approach. The algorithm achieves close to 100 percent accuracy in distinguishing rogue APs from legitimate APs in lightly loaded traffic conditions, and larger than 60 percent accuracy in heavy traffic conditions. At the same time, the detection only requires less than 1 second for lightly-loaded traffic conditions and tens of seconds for heavy traffic conditions.
  • Keywords
    computer network security; wireless LAN; DNS server; WLAN operator; client-centric approach; rogue AP detection; rogue access points; timing-based scheme; wireless cards; Accuracy; Internet; Monitoring; Probes; Protocols; Servers; Wireless communication; IEEE 802.11; Wireless LAN; rogue access point; round trip time.;
  • fLanguage
    English
  • Journal_Title
    Parallel and Distributed Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1045-9219
  • Type

    jour

  • DOI
    10.1109/TPDS.2011.125
  • Filename
    6007016