Project: IEEE 802 EC Privacy Recommendation Study Group

Slides:



Advertisements
Similar presentations
Doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 1 Project: IEEE 802 EC Privacy Recommendation.
Advertisements

Submission Title: [LB 28 Results] Date Submitted: [14 March 2005]
Submission Title: [Add name of submission]
June 2006 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Proposed Scenarios for Usage Model Document.
Jan 2014 Robert Moskowitz, Verizon
doc.: IEEE <doc#>
March 2008 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Toumaz response to TG6 Call for Applications]
Robert Moskowitz, Verizon
<month year> <Sept 2018>
July 2013 Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
<month year> doc.: IEEE <xyz> January 2001
Project: IEEE 802 EC Privacy Recommendation Study Group
Nov 2013 Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Nov 2013 Robert Moskowitz, Verizon
May 2015 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: May 2015 closing report Date Submitted: May.
Nov 2014 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: KMP TG9 Opening Report San Antonio 2014 Date.
Jan 2015 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: Jan 2015 closing report Date Submitted: Jan.
January 2016 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: January 2016 closing report Date Submitted:
Jan 2014 Robert Moskowitz, Verizon
Jan Robert Moskowitz, Verizon
July 2014 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: July 2014 closing report Date Submitted: July.
<month year> doc.: IEEE <xyz> November 2000
doc.: IEEE /XXXr0 Sep 19, 2007 June 2009
July 2014 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: KMP TG9 Opening Report San Diego 2014 Date.
Robert Moskowitz, Verizon
Submission Title: [Frame and packet structure in ]
November 2006 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Simplified geometry for the usage model.
July 2013 Robert Moskowitz, Verizon
Nov 2013 Robert Moskowitz, Verizon
Sept 2014 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: KMP TG9 Opening Report Athens 2014 Date Submitted:
Robert Moskowitz, Verizon
January 2016 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: January 2016 closing report Date Submitted:
July 2012 Robert Moskowitz, Verizon
April 19 July 2010 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: WNG Closing Report for San Diego.
Robert Moskowitz, Verizon
November 2015 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: November 2015 closing report Date Submitted:
Robert Moskowitz, Verizon
May 2013 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: May 2013 closing report Date Submitted: May.
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
Submission Title: [LB 28 Results] Date Submitted: [14 March 2005]
Robert Moskowitz, Verizon
July 2013 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: Technical Decisions for KMP transport Date.
May 2014 Robert Moskowitz, Verizon
Robert Moskowitz, Verizon
August, 2008 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Improve the latency between GTS request.
Mar Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: March 2014 closing report Date Submitted: March.
Sept 2014 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: KMP TG9 Opening Report Athens 2014 Date Submitted:
Submission Title: TG9ma Closing Report for July Meeting
Jul 12, /12/10 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: Dependable Interest Group Closing.
Robert Moskowitz, Verizon
Submission Title: TG9ma Agenda for September Meeting
August 2019 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: MLME-SOUNDING and MLME-CALIBRATE comment.
August 2019 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: MLME-SOUNDING and MLME-CALIBRATE comment.
Jan 2008 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: TeraHertz Closing Report Date Submitted: January.
May 2014 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: TG9 Hop Discussion Date Submitted: May 15, 2014.
Submission Title: TG9ma Closing Report for July Meeting
Submission Title: TG9ma Closing Report for September Meeting
Presentation transcript:

Project: IEEE 802 EC Privacy Recommendation Study Group Dec 2014 Project: IEEE 802 EC Privacy Recommendation Study Group Submission Title: Secure Moderated Random MAC Addresses Date Submitted: Dec 10, 2014 Source: Robert Moskowitz, Verizon Address 1000 Bent Creek Blvd, MechanicsBurg, PA, USA Voice:+1 (248) 968-9809, e-mail: rgm@labs.htt-consult.com Re: KMP TG9 Closing Report for Sept 2014 Session Abstract: Secure Moderated Random MAC Addresses Purpose: To Securely Moderate Random MAC Addresses Notice: This document has been prepared to assist the IEEE P802 EC. It is offered as a basis for discussion and is not binding on the contributing individual(s) or organization(s). The material in this document is subject to change in form and content after further study. The contributor(s) reserve(s) the right to add, amend or withdraw material contained herein. Release: The contributor acknowledges and accepts that this contribution becomes the property of IEEE and may be made publicly available by P802 EC. Robert Moskowitz, Verizon

Secure Moderated Random MAC Addresses Dec 2014 Secure Moderated Random MAC Addresses Conference Call Dec 10, 2014 Robert Moskowitz, Verizon

Dec 2014 Problem Statement Free for all in Local Scope MAC address space Randomized address selection has no method of dealing with collisions Even if full 46 bits remain available 802 architecture calls out for use of an address moderator if Local Scope is used A moderator should introduce yet another attack point Robert Moskowitz, Verizon

A simple Moderator Protocol Dec 2014 A simple Moderator Protocol Client informs moderator of MAC address it will use Moderator either accepts or rejects What constitutes a reject. How does the moderator know? No way for Moderator to recognize duplicates Sounds a bit like DHCP Robert Moskowitz, Verizon

And crypto signing of request Dec 2014 And crypto signing of request The client can digitally sign the address request The moderator can now recognize different clients using the same address and reject the late-comer But what design won't add yet another attack point? Replay attacks for signed requests Resource attacks against the crypto operations Probably more Robert Moskowitz, Verizon

A simple secure exchange Dec 2014 A simple secure exchange Use ECDH Moderator BEACONs its ECDH key Client derives address from its ECDH key Client MICs its request with ECDH shared secret Including ECDH key Moderator ACK/NAKs request MICed with ECDH shared secret Fits well within 802.11 BEACON/ASSOCIATE mechanism Fits well within DHCP Devil is in the Details Robert Moskowitz, Verizon

Dec 2014 DISCUSSION Robert Moskowitz, Verizon