Doc.: IEEE privecsg-14-0026-01-Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 1 Project: IEEE 802 EC Privacy Recommendation.

Slides:



Advertisements
Similar presentations
Doc.: IEEE tg9-proposed-document-changes Submission Nov 2013 Robert Moskowitz, VerizonSlide 1 Project: IEEE P Working Group for.
Advertisements

Submission doc.: IEEE /XXXXr0 Month Year John Doe, Some CompanySlide 1 Insert Presentation Title Here Date: YYYY-MM-DD Authors: Notice: This document.
Doc.: Submission, Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Securing the Network.
Doc.: IEEE a-Updating-15-7-security Submission May 2015 Robert Moskowitz, HTT ConsultingSlide 1 Project: IEEE P Working Group for.
Doc: IEEE xxx Submission April 2015 Woongsoo Na, et al., Chung-Ang University Project: IEEE P Working Group for Wireless Personal.
Doc.: Submission, Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [LB97 PICS Scrub] Date Submitted:
Doc.: IEEE s Submission January 2015 Mineo Takai, Space-Time EngineeringSlide 1 Project: IEEE P Working Group for Wireless Personal.
Doc.: IEEE xxxxx Submission doc. : IEEE doc. : IEEE pac Nov 2012 Slide 1 Project: IEEE P Working.
Doc.: IEEE e Submission f TG November 2009 Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks.
Doc.: IEEE xxxxx Submission doc. : IEEE Nov 2012 Slide 1 Project: IEEE P Working Group for Wireless Personal Area.
Doc.: IEEE /0095r1 Submission Jan 2005 Gregg Rasor, FreescaleSlide 1 Project: IEEE Working Group for Wireless Personal Area Networks (WPANs)
Doc.: IEEE /0136r0 Submission March 2006 Abbie Mathew, NewLANS Project: IEEE P Working Group for Wireless Personal Area Networks Submission.
Doc.: IEEE Hop-Discuss Submission July 2014 Robert Moskowitz, Verizon Slide 1 Project: IEEE P Working Group for Wireless Personal.
July 2004 Jay Bain, Fearn Consulting doc.: IEEE /0379r0 Submission Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs)
Doc.: IEEE KMP-Transport-Joint Submission July 2012 Robert Moskowitz, Verizon Slide 1 Project: IEEE P Working Group for Wireless.
Doc.: IEEE Submission November 2012 Sunggeun Jin (ETRI)Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks.
Doc.: IEEE HIP-over-TG9 Submission May 2012 Robert Moskowitz, Verizon Slide 1 Project: IEEE P Working Group for Wireless Personal.
Doc.: IEEE Submission doc. : IEEE March 2009 Project: IEEE P Working Group for Wireless Personal Area Networks.
Doc.: IEEE tg9-Opening-Report-mar-2015 Submission Mar 2015 Robert Moskowitz, HTT Consulting Slide 1 Project: IEEE P Working Group.
Doc.: IEEE Submission January 2016 Ed Callaway, ARM, Inc.Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs)
IEEE xxxx e Submission: Required Log Items 1 September 2008 Ryoji Ono, Hirohito Nishiyama, Tatsuji MunakaSlide 1 Project: IEEE P
Doc.: IEEE a Submission September, 2005 Brethour, Time DomainSlide 1 Project: IEEE P Working Group for Wireless Personal Area.
Doc.: IEEE kmp Submission September 2011 Robert Moskowitz, Verizon Slide 1 Project: IEEE P Working Group for Wireless Personal.
Submission November 2015 Slide 1Li Qiang, Huawei Technologies Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission.
Doc.: IEEE b Submission July 2004 Liang Li, WXZJ Inc Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks.
Doc.: IEEE xxxxx Submission doc. : IEEE Slide 1 Junbeom Hur and Sungrae Cho, Chung-Ang University Project: IEEE P
Doc.: IEEE Submission, Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Communicating.
Doc.: wng0> Submission Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Using Host.
Doc.: IEEE g TG4g Presentation Jan 2010 C.S. Sum1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs)‏
Doc.: IEEE g Submission March 2011 Xing Tao (SIMIT/WSNIRI), Khanh Tuan Le (TI) Project: IEEE P Working Group for Wireless Personal.
Doc.: IEEE wng0 SCWNGSlide 1 May 2012 Pat Kinney, Kinney Consulting LLC Slide 1 Project: IEEE P Working Group for Wireless Personal.
Doc.: IEEE leci LECIM IGSlide 1 July 2010 David Howard, On Ramp Wireless Slide 1 Project: IEEE P Working Group for Wireless Personal.
Submission doc.: IEEE /0339r0 Jul 2004 Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title:
Doc.: IEEE e Submission July 2009 Andy Summers, Skip Ashton, EmberSlide 1 Project: IEEE P Working Group for Wireless Personal.
Submission May 2016 doc.: Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [ e Status Report.
Doc.: IEEE Submission, Slide 1 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [IEEE
Doc.: IEEE tg9-technical-decisions Submission July 2013 Robert Moskowitz, Verizon Slide 1 Project: IEEE P Working Group for Wireless.
Submission Title: [Add name of submission]
Project: IEEE 802 EC Privacy Recommendation Study Group
June 2006 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Proposed Scenarios for Usage Model Document.
doc.: IEEE <doc#>
March 2008 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Toumaz response to TG6 Call for Applications]
<month year> doc.: IEEE < e>
<month year> doc.: IEEE <xyz> January 2001
Project: IEEE 802 EC Privacy Recommendation Study Group
May 2015 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: May 2015 closing report Date Submitted: May.
Jan 2015 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: Jan 2015 closing report Date Submitted: Jan.
January 2016 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: January 2016 closing report Date Submitted:
平成31年2月 doc.: IEEE /424r1 November 2007
<month year> doc.: IEEE <xyz> November 2000
平成31年2月 doc.: IEEE /424r1 Jan 2009 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Motion to.
doc.: IEEE /XXXr0 Sep 19, 2007 June 2009
Submission Title: [Frame and packet structure in ]
<month year>20 Jan 2006
<month year> doc.: IEEE < e>
January 2016 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: January 2016 closing report Date Submitted:
April 19 July 2010 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: WNG Closing Report for San Diego.
平成31年5月 doc.: IEEE /424r1 September 2007
November 2015 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: November 2015 closing report Date Submitted:
Submission Title: [LB 28 Results] Date Submitted: [14 March 2005]
Robert Moskowitz, Verizon
平成31年7月 doc.: IEEE /424r1 March 2007 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [TG3c Call.
平成31年7月 doc.: IEEE /424r1 November 2007
August, 2008 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Improve the latency between GTS request.
Jul 12, /12/10 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: Dependable Interest Group Closing.
Robert Moskowitz, Verizon
Jul 12, /12/10 Project: IEEE P Working Group for Wireless Specialty Networks (WSN) Submission Title: TG4z EIR Agenda for September 2019 Date.
Jan 2008 Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: TeraHertz Closing Report Date Submitted: January.
Jul 12, /12/10 Project: IEEE P Working Group for Wireless Specialty Networks (WSN) Submission Title: TG4z EIR Agenda for November 2019 Date.
Presentation transcript:

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 1 Project: IEEE 802 EC Privacy Recommendation Study Group Submission Title: Secure Moderated Random MAC Addresses Date Submitted: Jan 13, 2015 Source: Robert Moskowitz, HTT Consulting Address: Oak Park, MI, USA Voice:+1 (248) , Re: Privacy for MAC Addresses Abstract:Secure Moderated Random MAC Addresses Purpose:To Securely Moderate Random MAC Addresses Notice:This document has been prepared to assist the IEEE P802 EC. It is offered as a basis for discussion and is not binding on the contributing individual(s) or organization(s). The material in this document is subject to change in form and content after further study. The contributor(s) reserve(s) the right to add, amend or withdraw material contained herein. Release:The contributor acknowledges and accepts that this contribution becomes the property of IEEE and may be made publicly available by P802 EC.

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 2 Secure Moderated Random MAC Addresses Atlanta, GA Jan 13, 2015

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 3 Problem Statement Free for all in Local Scope MAC address space Randomized address selection has no method of dealing with collisions – Even if full 46 bits remain available 802 architecture calls out for use of an address moderator if Local Scope is used – A moderator could introduce yet another attack point

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 4 A simple Moderator Protocol Client informs moderator of MAC address it will use Moderator either accepts or rejects – What constitutes a reject How does the moderator know? No way for Moderator to recognize duplicates Sounds a bit like DHCP

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 5 An Enhanced Moderator Protocol Client informs moderator of MAC address it will use – Includes a 128 bit random 'ID' Moderator either accepts or rejects – If different ID from current assigned for MAC address – If repeat ID for a different MAC address? Open to ID cloning attack against stable ID use – OK in completely random MAC use – Issue for permanent MAC use

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 6 And crypto signing of request The client can digitally sign the address request The moderator can now recognize different clients using the same address and reject the late-comer Protect against cloning use How do you build up a trusted signing infrastructure? But what design won't add yet another attack point? – Replay attacks for signed requests – Resource attacks against the crypto operations – Probably more

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 7 A simple secure exchange Use ECDH Moderator BEACONs its ECDH key Client derives address from its ECDH key – May be ephemeral or long-lived, depending on goal Client MICs its request with ECDH shared secret – Including ECDH key Moderator ACK/NAKs request – MICed witgh ECDH shared secret Fits well within BEACON/ASSOCIATE Fits well within DHCP Devil is in the Details

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 8 Summary of Moderator Methods The Moderator only receives requested MAC address – No management of duplicate MAC addresses – DHCP today ID accompanies MAC in request – Moderator can recognize duplicates – Works well enough for AdHoc only MAC use MAC request cryptographically signed – Very problematic in terms of costs vs value MAC address cryptographically generated – Balances AdHoc and long-term use of MAC address

doc.: IEEE privecsg Rnd-Modr-MAC-Addr Submission Jan 2015 Robert Moskowitz, HTT Consulting Slide 9 DISCUSSION