Security requirements for LWAPP?
From: William Arbaugh (waacs.umd.edu)
Date: 17 Jul 2003 13:45:43 -0000
We've been talking about the best way to protect the LWAPP packets, and I just wanted to do a quick check on what people feel are the requirements.

Here's a quick view from myself:

Authentication: AP to AR and AR to AP (counters masquerading AR's and rogue AP's)
Integrity: All packets (prevents injections and modification attacks)
Confidentiality: Not sure if this is needed
Key Management: Something beyond EAPoL-key needed?


Bill


Results generated by Tiger Technologies using MHonArc.