Zidan, Alaa and Amin, Khalid M. and Ghanem, T. (2021) Enhanced User Authentication Based on Dynamic Port Knocking Technique. IJCI. International Journal of Computers and Information, 8 (2). pp. 115-124. ISSN 2735-3257
IJCI_Volume 8_Issue 2_Pages 115-124.pdf - Published Version
Download (569kB)
Abstract
Port knocking is a passive authentication
mechanism which aims to control firewall response using a
sequence of connection attempts to its closed ports. Dynamic
port knocking which varies in each session, faces many
challenges which are knocking sequence synchronization
between client and server, handling high load of normal
requests, out of order knocks, lost knocks, knocking through
NAT, and knocking attacks. In this paper, a proposed dynamic
port knocking approach is provided. The proposed approach,
with the help of intermediate IPS, enables client and target
server to generate a unique dynamic knocking sequence based
on a secured random seed. This process is executed only at first
communication session. Next, client begins to authenticate
himself by knocking the target service with different ports and
different number of knocks each time a session is initiated.
Client-Server knocking synchronization, lost knocks, and out
of order knocks are considered for issuing a correct knocking.
The proposed approach provides immunity against several
network attacks such as DoS attack, replay attack, and brute
forcing attack. Extensive simulation shows that the proposed
work overcome other compared approaches in terms of
response time, memory utilization, CPU utilization, and the
number of provided features.
Item Type: | Article |
---|---|
Subjects: | STM Academic > Computer Science |
Depositing User: | Unnamed user with email support@stmacademic.com |
Date Deposited: | 14 Oct 2023 05:38 |
Last Modified: | 14 Oct 2023 05:38 |
URI: | http://article.researchpromo.com/id/eprint/1285 |