Abstract

In order to solve the dictionary attack problem, the Man-in-the-MiddleAttack problem, and the accuracy problem of the transmission data received by Radius server, and the problem of judgment of Replay Attacks by Radius protocol. In this paper, Radius server in EAP authentication mode is improved and a new EAP-based authentication method KEAPII protocol is proposed. First, Private-public key pair attributes and Hash key attributes are added in the Radius protocol. Second, after referring to the Kerberos protocol authentication concept, the concept of ticket authorization was introduced in the Radius server. Finally, a data table combining the key sequence number in Hash basic chain and the random number is placed in both the Client and the Radius server. After security analysis, KEAPII protocol guarantees the security of the message during transmission, and the Radius server has improved the accuracy of the received messages. Client and Radius servers are guaranteed to avoid Replay Attacks.

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call