Title :
Performance evaluation of security architecture for wireless local area networks by indexed based policy method
Author :
Nayak, Debabrata ; Phatak, D.B. ; Gulati, V.P.
Author_Institution :
Kanwal Rekhi Sch. of Inf. Technol., Indian Inst. of Technol., Mumbai
Abstract :
In this paper, we investigated existing and proposed WLAN security technologies designed to improve the IEEE 802.11 standard by applying security policies. We have extensively analyzed the effect of crypto parameters over WLAN based on packet level characteristics by applying the security policy to an individual packet. We have also analyzed the effect of TCP and UDP traffic over our proposed WLAN testbed architecture. We found that TCP and UDP traffic behaves erratically, when policy index changes causing drastic degradation of system performance. In this paper, we present a detailed study of performance overhead caused by the most widely used security protocols such as WEP, IPSEC VPN and IEEE 801.1X. Furthermore, we analyze the effectiveness of such solutions, based on measurement of policy indexing model implementation. Performance measurement indicates that the 802.1X and VPN policy based method can be used based on the service time in future wireless systems, while it can simultaneously provide both the necessary flexibility to network operators and a high level of confidence to end users
Keywords :
IEEE standards; performance evaluation; protocols; telecommunication security; telecommunication traffic; wireless LAN; IEEE 801.1X; IEEE 802.11 standard; IPSEC; TCP; UDP traffic; VPN; WEP; WLAN; crypto parameters; indexed based policy method; packet level characteristics; performance overhead; policy indexing model implementation; security architecture; security policies; security protocols; service time; testbed architecture; wireless local area networks; Cryptography; Degradation; Indexing; Measurement; Protocols; Security; System performance; Testing; Virtual private networks; Wireless LAN;
Conference_Titel :
Advances in Wired and Wireless Communication, 2005 IEEE/Sarnoff Symposium on
Conference_Location :
Princeton, NJ
Print_ISBN :
0-7803-8854-2
DOI :
10.1109/SARNOF.2005.1426506