Attacks Due to Flaw of Protocols Used in Network Access Control (NAC), Their Solutions and Issues: A Survey

Snehasish Parhi 1,*

1. Department of Computer Center National Institute of Technology, Rourkela, Odisha, India

* Corresponding author.


Received: 5 Jul. 2011 / Revised: 2 Nov. 2011 / Accepted: 1 Jan. 2012 / Published: 8 Apr. 2012

Index Terms

NAC, 802.1x, EAP 802.11i, 802.11w, RADIUS


In order to ensure and enforce endpoint security, Network Access Control (NAC) is attracting considerable interest from the research community. Most NAC architectures are based on 802.1x, EAP (Extensible Authentication Protocol), EAPoL (EAP over LAN) 802.11i, 802.11w, and RADIUS (Remote Authentication Dial-In User Service) protocols. Unprotected management and control frames in some of above protocols lead to several attacks. Eliminating flaws completely in design of each protocol is a challenge. These flaws help malicious user and infected endpoint to intrude into the NAC architecture to make damage into it. Many researches have been carried out to address this issue. In this paper, we have made an attempt to explain attacks in above protocols and present a survey and analysis of different solution approaches proposed by researchers. The affect of vulnerability and attack of above protocols in NAC is also discussed. The finding of this review will provide useful insights into the vulnerabilities, attacks in above protocols, and their proposed solutions with issues, which may create a research scope for strengthening security in NAC.

Cite This Paper

Snehasish Parhi, "Attacks Due to Flaw of Protocols Used In Network Access Control (NAC), Their Solutions and Issues: A Survey ", International Journal of Computer Network and Information Security(IJCNIS), vol.4, no.3, pp.31-46, 2012. DOI:10.5815/ijcnis.2012.03.05


