[CSAIL - MIT]: New Wi-Fi security method does not require password
1–6 of 6 posts
Re: [CSAIL - MIT]: New Wi-Fi security method does not require password
#2Re: [CSAIL - MIT]: New Wi-Fi security method does not require password
#3Re: [CSAIL - MIT]: New Wi-Fi security method does not require password
#4While I think it -could- work, no 2 people could authenticate at the same time, even to different access points. That would be a nightmare for conventions.
http://www.usenix.org/events/sec11/tech/tech.html#Gollakota
The abstract says they've made it work on busy networks.
Re: [CSAIL - MIT]: New Wi-Fi security method does not require password
#5First of all, it's not true that a jammer can't simulate silence. It's tricky and requires phase locking with accurate propagation delay estimates to the receiver, but possible.
It also does nothing against a relay attack where the client can't hear the server directly. For example, I could relay the wireless AP from two rooms over so you'd connect to that one entirely through my relay.
Re: [CSAIL - MIT]: New Wi-Fi security method does not require password
#6There is a way to do smart card authentication to a LAN,where you would not be required to enter a password to connect and everything would be wpa2 encrypted. I implemented it before in a MS environment. It required a ton of painful configuration. The downside, even though it worked, was that it was pretty flaky and refused to stay connected for certain users when we rolled it out. Ended up scrapping it for a wpa2+pa…