ZTA-based Federated Policy Control Paradigm for Enterprise Wireless Network Infrastructure
Boo Geum Jung, Yoon-Sik Yoo, Ki-Won Kim, Byoung-Sik Kim, Hyung-Kyu Lee, HeaSook Park · 2022 27th Asia Pacific Conference on Communications (APCC) · 2022
The increasing use of wireless devices comes with advances in Wi-Fi technology. Devices with a Wi-Fi interface use the wireless network for convenient connection. Wireless networks face a variety of security threats, such as mac spoofing, rogue twins, DDoS attack and sniffing. We propose a Zero Trust Architecture (ZTA) paradigm to supplement enterprise wireless network control and to enhance security. ZTA can protect enterprise network resources by authorizing only authenticated users and devices to access enterprise services. ZTA in this paper is implemented within Wi-Fi Protected Access (WPA) enterprise network environment and is named wireless-ZTA. After analyzing the implementation performance, it conducts a DDoS attack to prove a stealth enterprise service invisible to malicious adversaries. To verify the effectiveness of the proposed Wireless-ZTA, additional analysis such as a network blacken test that cannot be accessed except for authorized services was performed. This analysis leads to conclusions, along with insights into the future of ZTA in enterprise wireless networks.