Submission doc.: IEEE 11-14/0430r2 March 2014 Dan Harkins, Aruba NetworksSlide 1 Randomized MAC Addresses for Privacy Enhancement Date: 2014-03-18 Authors:

Slides:



Advertisements
Similar presentations
Doc.: IEEE /0338r1 Submission March 2012 Hung-Yu Wei, National Taiwan UniversitySlide 1 DeepSleep: Power Saving Mode to Support a Large Number.
Advertisements

Doc.: IEEE /0413r0 Submission March 2009 Dan Harkins, Aruba NetworksSlide 1 A Study Group for Enhanced Security Date: Authors:
Doc.: IEEE /1263r0 Submission November 2008 Dan Harkins, Aruba NetworksSlide 1 A Modest Proposal…. Date: Authors:
Doc.: IEEE /0824r2 Submission July 2010 Carlos Cordeiro, Intel CorporationSlide 1 Response to ITU-R Liaison to IEEE on Multiple Gigabit Wireless.
Doc.: IEEE /1120r2 Submission September 2008 Guido R. Hiertz et al., PhilipsSlide 1 Terminology changes in a nutshell … Date: Authors:
Doc.: IEEE /1012r0 Submission September 2009 Dan Harkins, Aruba NetworksSlide 1 Suite-B Compliance for a Mesh Network Date: Authors:
Submission doc.: IEEE /0325r0 March 2012 Slide 1 TIM Enhancement With Group Bits Date: Authors: Zhong-Yi Jin, Nokia.
Doc. No. IEEE hew-r2 Submission May 2013 Klaus Doppler, NokiaSlide 1 Dense apartment building use case for HEW Date: May 14, 2013 Authors:
April 2013 doc.: IEEE Nov 2013 Dense Apartment Complex Capacity Improvements with Channel selection and Dynamic Sensitivity Control Date:
Doc.: IEEE /0328r2 Submission Dense Apartment Complex Throughput Calculations Channel Selection and DSC Date: Authors: Graham Smith, DSP.
Submission doc.: IEEE 11-14/0xxx March 2014 Giwon Park, LG ElectronicsSlide 1 Discussion on power save mode for real time traffic Date: Authors:
Doc.: IEEE /0259r02 Submission Date: ad New Technique Proposal March 2010 Yuichi Morioka, Sony CorporationSlide 1 Authors:
Doc.: IEEE /0301r2 Submission March 2011 David Halasz, OakTree WirelessSlide 1 Categories of TGah Use Cases and Straw Polls Date: Authors:
Doc.: IEEE /1097r1 Submission Sep 2012 Timo Koskela, Renesas Mobile CorporationSlide 1 Reserve Channel List in ah Date: Authors:
Submission doc.: IEEE 11-13/0487r0 May 2013 Dan Harkins, Aruba NetworksSlide 1 How To Fragment An IE Date: Authors:
Doc.: IEEE /0093r2 Submission NameAffiliationsAddressPhone Hitoshi MORIOKAAllied Telesis R&D Center Tenjin, Chuo-ku, Fukuoka
Doc.: IEEE /095r0 Submission January 2003 Dan Harkins, Trapeze Networks.Slide 1 Fast Re-authentication Dan Harkins.
Doc.: IEEE /689r0 Submission November 2002 Dan Harkins, Trapeze Networks.Slide 1 Re-authentication when Roaming Dan Harkins.
Doc.: IEEE /0786r2 Submission Differentiated Initial Link Setup (Follow Up) July 2012 Lin Cai et al,Huawei.Slide 1 Authors: NameAffiliationsAddressPhone .
Doc.: IEEE /0295r0 Submission PRAW Follow Up Date: Authors: March 2013.
Doc.: IEEE /0613r0 Submission May 2012 Ron Porat, Broadcom US Channelization Date: Authors: Slide 1.
Doc.: IEEE /0618r2 Submission May 2014 Yunsong Yang, HuaweiSlide 1 TGaq CAG Number IE Date: Authors:
Submission doc.: IEEE 11-10/0443r0 March 2014 Jarkko Kneckt, NokiaSlide 1 What Is P2P Traffic in HEW Simulation Scenarios? Date: Authors:
GroupID Concept for Downlink MU-MIMO Transmission
Doc.: IEEE /1550r1 Submission Nov 2011 Zander, I2R SingaporeSlide 1 Extension of AID and TIM to Support 6000 STAs in ah Date:
Submission doc.: IEEE 11-13/1389r1 November 2013 Kiseon Ryu et.al, LG ElectronicsSlide 1 Discussion on HEW PAR Date: Authors:
Doc.: IEEE / hew Submission March 2014 Raja Banerjea, CSRSlide 1 A Simplified Simultaneous Transmit and Receive Mechanism Date:
Doc.: IEEE /1106r0 Submission September 2012 Osama Aboul-Magd, Huawei TechnologiesSlide 1 A Short-Header Frame Format Date: Authors:
Doc.: IEEE /1521r2 Submission January 2012 Marc Emmelmann, FOKUSSlide 1 AP and Network Discovery Enhancements Date: Authors:
Submission doc.: IEEE 11-13/0070r1 Enabling AP Sleep Date: Authors: Jafarian, Qualcomm Slide 1 January 2013.
Doc.: IEEE /0870r0 Submission July 2014 Marc Emmelmann, SELFSlide 1 TGai July 2014 Ad-Hoc Straw Polls Date: Authors:
Doc.: IEEE /0898r2 Submission July 2012 Marc Emmelmann, FOKUSSlide 1 Fast Initial Service Discovery: An enabler for Self-Growing Date:
ZTE corporation doc.: IEEE /1086r2 September 2012 Submission TIM Compression for No Buffered Unicast Traffic Date: Slide 1 Authors:
Impact of LTE in Unlicensed Spectrum on Wi-Fi
Doc.: IEEE /0810r0 Submission May 2011 Minho Cheong, ETRISlide 1 Selection of Key Requirement Elements for Baseline FR-EM Document Date:
Doc.: IEEE /0342r0 SubmissionLiwen Chu Etc.Slide 1 Power Efficient PS Poll Date: Authors: Date: March, 2012.
Doc.: IEEE /0608r2 Submission May 2012 Shoukang Zheng et. al, I2R, SingaporeSlide 1 Low-Power PS-Poll Date: Authors:
Doc.: IEEE /0665r1 Submission May 2012 Anh Tuan Hoang et al (I2R) Slide 1 Prioritized PS-Polls Date: Authors:
Doc.: IEEE /1325r0 Submission Nov PS-Poll TXOP Date: Authors: David Xun Yang, Huawei, et. al.Slide 1.
PS-Poll TXOP Using RTS/CTS Protection
Doc.: IEEE /0283r0 Submission March 2009 Dan Harkins, Aruba NetworksSlide 1 Suggested Changes to the Abbreviated Handshake Date: Authors:
Submission doc.: IEEE ai November 2012 Lei Wang, InterDigital CommunicationsSlide 1 Proposals for the FD Frame Capability, Security and.
Doc.: IEEE /0564r0 Submission May 2014 Marc Emmelmann, SelfSlide 1 Results of LB 201 on TGai D2.0 Date: Authors:
Doc.: IEEE /0371r0 Submission March 2012 Ron Porat, Broadcom BF Feedback and Protocol Date: Authors: Slide 1.
Doc.: IEEE /0373r0 Submission March 2012 Ron Porat, Broadcom BF Frame Format Date: Authors: Slide 1.
Doc.: IEEE /0782r0 Submission July 2010 Daewon Lee, LG ElectronicsSlide 1 STA MU-MIMO Group Management Signaling Design Date: Authors:
Doc.: IEEE /0440r1 Submission July 2013 Jiamin Chen, HuaweiSlide 1 Dynamic Channel Transfer(DCT) procedure for IEEE aj ( 60GHz ) Date:
Transmission of IP Packets over Ethernet over IEEE draft-riegel-16ng-ip-over-eth-over Max Riegel
Doc.: IEEE /1176r0 Submission Sep 2013 Reza Hedayat (Cisco Systems) Slide 1 Some Simulation Scenarios for HEW NameAffiliationPhone Reza HedayatCisco.
TIM Compression Date: Authors: January 2012 Month Year
Doc.: IEEE /0598r0 Submission May 2012 Steve Grau, Juniper NetworksSlide 1 Layer 3 Setup with Dynamic VLAN Assignment Date: Authors:
Doc.: IEEE /1448 r00 Submission Paul A. Lambert, Marvell SemiconductorSlide Privacy Date: Authors: November 2013.
Doc.: IEEE /933r6 Submission July 2012 Fang Xie (CMCC)Slide 1 Access Control Mechanism for FILS Date: Authors: NameAffiliationsAddressPhone .
Doc.: IEEE /941r0 Submission July 2012 Slide 1 Access Control Mechanism for 11ah Date: Authors: NameAffiliationsAddressPhone Fang.
Submission doc.: IEEE 11-12/0589r2 July 2012 Donald Eastlake 3rd, Huawei R&D USASlide 1 General Links Date: Authors:
Doc.: IEEE /1061r1 Submission September 2015 Kare Agardh, SonySlide 1 Further Use Cases for Next Generation Positioning Date: 2015/09/13 Authors:
Doc.: IEEE /0888 r00 Submission Paul A. Lambert, Marvell SemiconductorSlide 1 Security and Privacy Enhancements for Date: Authors:
Submission doc.: IEEE 11-14/0062r0 January 2014 Dan Harkins, Aruba NetworksSlide 1 PMK Caching for FILS Date: Authors:
Doc.: IEEE /0834r0 Submission July 2015 Thomas Handte, SonySlide 1 Further Use Cases for Next Generation Positioning Date: 2015/07/13 Authors:
Submission doc.: IEEE /1128r1 September 2015 Dan Harkins, Aruba Networks (an HP company)Slide 1 Opportunistic Wireless Encryption Date:
Doc.: IEEE /0899r2 Submission July2010 Dan Harkins, Aruba NetworksSlide 1 Secure PSK Authentication Date: Authors:
Randomized MAC Addresses for Privacy Enhancement
P802.11aq Waiver request regarding IEEE RAC comments
P802.11aq Waiver request regarding IEEE RAC comments
Opportunistic Wireless Encryption
P802.11aq Pre-Association Service Discovery Summary
P802.11aq Waiver Request Additional Information
AP Power Down Notification
P802.11aq Waiver request regarding IEEE RAC comments
Do Not Fear Random MAC Addresses!
Presentation transcript:

Submission doc.: IEEE 11-14/0430r2 March 2014 Dan Harkins, Aruba NetworksSlide 1 Randomized MAC Addresses for Privacy Enhancement Date: Authors:

Submission doc.: IEEE 11-14/0430r2 March 2014 Dan Harkins, Aruba NetworksSlide 2 Abstract This slide deck presents the idea of using randomized MAC addresses as a tool to enhance privacy in

Submission doc.: IEEE 11-14/0430r2 What’s the Privacy Issue? Passive observation of bands reveals MAC addresses STAs active probing when not connected to a network Communication to connected network Location plus time plus frequency plus MAC address allows sensitive information to be gleaned This MAC address pops up around the AIDs clinic twice a week This MAC address is near the liquor store at 8am every day This MAC address leaves a certain apartment building in the early morning almost every weekend Social networks of such meta data can be built with good accuracy in positive identification Slide 3Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2 What’s the Privacy Issue? Sample headlines from 11-13/1448r1: Seattle Police Deactivate Wi-Fi Spy Grid After Privacy Outcry (Nov 2013) A DHS and Seattle police network collecting location information CreepyDOL Wi-Fi Surveillance project debuts at BlackHat/DEFCON (Aug 2013) DIY surveillance with low-cost Wi-Fi based sensors that capture MAC addresses Wi-Fi Trashcans Now Silently Tracking Your Smartphone Data (Aug 2013)... the company boasted that the cans, which included LCD advertising screens, "provide an unparalleled insight into the past behavior of unique devices"—and hence of the people who carry them around Guardian article last week: Phone call metadata does betray sensitive details about your life (Mar 2014) Stanford researchers were able accurately identify volunteers in a study that gave up their meta data, determining that one person probably had MS, another probably had an abortion, and another probably grew marijuana Slide 4Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2March 2014 Dan Harkins, Aruba NetworksSlide 5 Proposal When not attached to a network… Assign a random MAC address to the wireless interface of portable and mobile STAs (not fixed STAs and APs) Periodically change to a new random MAC address Don’t actively probe for known networks When attaching to a network… Choose a new random MAC address and connect While attached to a network… Keep the same MAC address for the life of the connection Cache PMKSAs (and the MAC address therein) in an RSN When reattaching to a network… Assign the MAC address from the cached PMKSA, then connect

Submission doc.: IEEE 11-14/0430r2 What’s a Random MAC address? Take a 48-bit datum Assign the datum a random 48-bit string Set the bit indicating “locally administered MAC” Clear the “unicast/multicast” bit indicating unicast Assign that 48-bit datum to the MAC address Slide 6Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2 Obvious Question #1 Whaddya mean random? Make a random selection from the pool of available MAC addresses Each possible MAC address from the pool of available MAC addresses has equal probability of being chosen I mean the same thing as is meant by the use of the word in section in IEEE Std But where does it say how to do that? Well, appendix M.5 of IEEE Std has some fine recommendations for implementers to follow Note: I’m not blazing a new trail by using the word random! Slide 7Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2 Obvious Question #2 What are you gonna do about collisions? Nothing! There are 2 46 possible random MAC addresses The chosen MAC addresses have to be unique in bridged network, they don’t have to be globally unique So probability of n people choosing the same MAC address from a pool of size 2 46 is: 1 – ((2 46 – 1)/2 46 ) (n*(n-1))/2 Let’s say roughly 1000 STAs in the wireless network that means different pairings, probability becomes: 1 – ((2 46 – 1)/2 46 ) It’s too small to worry about! Slide 8Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2 Obvious Question #3 Won’t this screw up a whole bunch of ? Don’t think so, unless pervasive monitoring is viewed as a positive Won’t this screw up services provided to users of ? Depends on the service, but probably there are some. It’s optional; UIs (not done here) can make this an opt-in If you want to take advantage of a service that requires you to be tracked then don’t use this optional feature Patient: “Doctor it hurts when I do this” Doctor: “Don’t do that” Slide 9Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2March 2014 Dan Harkins, Aruba NetworksSlide 10 References 11-13/1448r1 – privacy

Submission doc.: IEEE 11-14/0430r2 Straw Poll Do you support the idea of adding a description of doing randomized MAC addresses in the standard? Yes: No: Don’t care: Slide 11Dan Harkins, Aruba Networks March 2014

Submission doc.: IEEE 11-14/0430r2 Motion Instruct the editor to incorporate the changes specified in 11-14/0367r2 into the TGm draft Moved by: Seconded by: Yes votes: No votes: Abstain votes: Slide 12Dan Harkins, Aruba Networks March 2014