近年来,无线局域网发展迅速,随着无线热点在公共场所大规模部署,人们享受着免费的无线上网服务。而与此同时,WiFi安全成为了无线安全关注的一个热点问题。其中,伪AP攻击是一种较常见、非常严重的安全威胁。但现有的伪AP检测技术更多的停留在理论可行,少有适于个人终端的产品。针对伪AP攻击的安全隐患问题,结合现有技术以及伪AP的特征分析,提出一种基于信标帧顺序编号校验的伪AP检测的轻量级解决方案。该方法经实验测试证明有效。
In recent years,wireless local area network is developing rapidly.With the wide deployment of WLAN hotspots in public places,people are enjoying free WiFi service.While at the same time,porblems of WiFi security becomes a hot point.Among them,rogue AP attack is a common and very serious security threat.But the existing rogue AP detection technology stops in "theoretically possible",and few products suitable for personal terminal.To solve the security flaws of rogue AP attacks,this paper analyzes the feature of rogue AP attack,and proposes a lightweight solution of rogue AP detection based on the sequence number of beacon frames.The method is proved to be effective by experiment.