Wireless LANs Unsafe at any key size ; An analysis of the WEP encapsulation
نویسندگان
چکیده
The IEEE 802.11 standard [1] defines the Wired Equivalent Privacy, or WEP, encapsulation of 802.11 data frames. The goal of WEP is to provide data privacy to the level of a wired network. The 802.11 design community generally concedes that the WEP encapsulation fails to meet its design goal, but widely attributes this failure to WEP’s use of 40-bit RC4 (see [2] or [3] for a description of RC4) as its encryption mechanism. Even at this late date, it is still repeatedly suggested, asserted, and assumed that WEP could meet its design goal by migrating from 40-bit to 104or 128-bit RC4 keys instead. This report seeks dispel this notion once and for all: it is infeasible to achieve privacy with the WEP encapsulation by simply increasing key size. The submission reports easily implemented, practical attacks against WEP that succeed regardless of the key size or the cipher. In particular, as currently defined, WEP’s usage of encryption is a fundamentally unsound construction; the WEP encapsulation remains insecure whether its key length is 1 bit or 1000 or any other size whatsoever, and the same remains true when any other stream cipher replaces RC4. The weakness stems from WEP’s usage of its initialization vector. This vulnerability prevents the WEP encapsulation from providing a meaningful notion of privacy at any key size. The deficiency of the WEP encapsulation design arises from attempts to adapt RC4 to an environment for which it is poorly suited. This submission accordingly argues to replace RC4 by different cryptographic primitives in new work going forward. It identifies the characteristics needed by any encryption algorithm that can effectively provide data privacy in a wireless environment, and recommends candidate replacement algorithms and a replacement encapsulation. October 2000 doc.: IEEE 802.11-00/362 Submission page 2 Jesse Walker, Intel Corporation
منابع مشابه
Jesse Walker , Intel Corporation IEEE P 802 . 11 Wireless LANs Unsafe at any key size ; An analysis of the WEP encapsulation
The IEEE 802.11 standard [1] defines the Wired Equivalent Privacy, or WEP, encapsulation of 802.11 data frames. The goal of WEP is to provide data privacy to the level of a wired network. The 802.11 design community generally concedes that the WEP encapsulation fails to meet its design goal, but widely attributes this failure to WEP’s use of 40-bit RC4 (see [2] or [3] for a description of RC4) ...
متن کاملLANs Unsafe at any key size ; An analysis of the WEP encapsulation
The IEEE 802.11 standard [1] defines the Wired Equivalent Privacy, or WEP, encapsulation of 802.11 data frames. The goal of WEP is to provide data privacy to the level of a wired network. The 802.11 design community generally concedes that the WEP encapsulation fails to meet its design goal, but widely attributes this failure to WEP’s use of 40-bit RC4 (see [2] or [3] for a description of RC4) ...
متن کاملIs Your Wireless Network Secure?
The use of wireless technology has become increasingly popular due to its flexibility and recent affordabili ty over traditional methods to access hard-wired LANs. This convenience, however, may not be worth the potential for losses incurred by its use. The 802.11b standard has been coming under increased scrutiny in light of a recently published paper outlining a significant vulnerability foun...
متن کاملLightweight Key Management for IEEE 802.11 Wireless LANs with Key Refresh and Host Revocation
IEEE 802.11 has been designed with very limited key management capabilities, using up to 4 static, long term, keys, shared by all the stations on the LAN. This design makes it quite difficult to fully revoke access from previously-authorized hosts. A host is fully revoked when it can no longer eavesdrop and decrypt traffic generated by other hosts on the wireless LAN. This paper propose WEP , a...
متن کاملAn investigation into the unauthorised use of 802.11 wireless local area networks
The use of 802.11 wireless local area networks (LANs) is growing at a phenomenal rate. However, numerous flaws have been discovered in WEP, and studies have shown that many wireless LANs are installed with their default settings. These are soft targets for war drivers, who drive around with laptops and 'cantennas' locating insecure wireless LANs. While it is known that wireless LANs experience ...
متن کامل