Response Time Improvement on One Time Password (OTP) Technique to Prevent Replay Attack in a Radius Environment
Journal Title: Current Journal of Applied Science and Technology - Year 2017, Vol 19, Issue 1
Abstract
This research is aimed at the modification of the Remote Access Dial in User Server (RADIUS) protocol with the one-time password (OTP) technique for the authentication environment with a captive portal to prevent replay attacks. One of the important network security measures on a campus network is the use of authentication for identification of legitimate users and one of the most widely used solution in network authentication is the RADIUS protocol. However, there are potential security vulnerabilities in the RADIUS network especially for networks using captive portal, such as the replay attack. The Ahmadu Bello University (ABU) network is simulated using the GNS3 software on a virtualized environment using Virtualbox, which comprises of the core, distribution and access levels of the network and network devices (routers and switches). An OTP generator was developed using PhP programming language for the three variants of the OTP: Time One Time Password (TOTP), Challenge Response One Time Password (CROTP) and Hash One Time Password (HOTP). Before improvement on the OTP technique using a PhP developed script, the result obtained shows the average response time for TOTP, CROTP and HOTP as 2.5s, 5.2s and 5.7s respectively, this result showed no improvement in the TOTP, CROPT and HOTP response time respectively when compared with the recommended response time of a RADIUS server in a captive portal environment which is 1000 ms [1]. After improving the OTP technique by integrating all the variants of OTP with the RADIUS server on a single server using the simulated ABU campus network using GNS3, the result shows a significant improvement over the above results. The results obtained shows the average response time for TOTP, CROTP and HOTP as 1.3s, 2s and 1.9s. The validation, based on the developed and simulated configuration was carried out using live servers, routers and switches and the results showed improvement over the above results the average response time for TOTP, CROTP and HOTP were obtained as 0.4s, 0.9s and 0.9s respectively. This shows significant improvement in the TOTP, CROPT and HOTP respectively. The result shows the average response time is less than the recommended 1000ms for RADIUS server response time in a captive portal environment.
Authors and Affiliations
Yusuf Abdullahi, Muhammad Bashir Muazu, Adewale Emmanuel Adedokun
Design and Analysis of Carbon Fiber Reinforced Composite Shell Structure Using Classical Laminate Plate Theory
The main focus of this project is to understand the nature of these laminated composites when subjected to specific damage cases like loads. In order to understand the progression of the failure modes in a laminated comp...
Natural Incidence and Genetic Variability of Erysiphe pisi, the Causal Agent of Powdery Mildew on Peas in the Nilgiris District, Tamil Nadu, India
Erysiphe pisi, which causes pea powdery mildew, is an obligate biotrophic pathogen that can easily adapt to its host plant. Understanding the natural incidence and genetic variations of the pathogen is essential for dise...
Research on Oxidation of Phenanthrene to Phenanthrenequinone and Its Kinetics
The oxidation of phenanthrene with TBHP into phenanthrenequinone and its kinetics have been studied. Reaction conditions were investigated by orthogonal test. For the oxidation of phenanthrene to phenanthrenequinone the...
Socio – Economic and Profitability Analysis of Catfish Production in Akure North Local Government of Ondo State, Nigeria
This study examined the Socio-economic characteristics of catfish farmers, estimated the cost and returns, and determined the profitability and ascertaining the factors that affect catfish production in Akure North Local...
Assessment of HACCP Safety System and Good Manufacturing Practices in a Multi-product Soft Drink Bottling Plant
Aims: To perform an evaluation of hazard analysis and critical control points (HACCP) implementation and good manufacturing practices (GMP) in a multi-product soft drink company in Nigeria. Study Design: Semi experiment...