DHCP Message Authentication with an Effective Key Management

In this paper we describes the authentication for DHCP (Dynamic Host Configuration Protocol) message which provides the efficient key management and reduces the danger replay attack without an additional packet for a replay attack. And the authentication for DHCP message supports mutual authentication and provides both entity authentication and message authentication. We applied the authentication for DHCP message to the home network environments and tested through a home gateway.




References:
[1] Kaaumasa Kobayashi and Suguru Yamaguchi, "Network Access Control
for DHCP Environment", INET97 Proceedings, 1997.
[2] R. Droms, "Dynamic Host Configuration Protocol", RFC 2131, March
1997.
[3] R. Droms, W. Arbaugh, "Authentication for DHCP messages", RFC
3118, June 2001.
[4] Mitch Tulloch, "DHCP Server Security (Part 1)", Articles::Misc Network
Security, Jul 2004.
[5] M. Stapp, T. Lemon, "The Authentication Suboption for the Dynamic
Host Configuration Protocol (DHCP) Relay Agent Option", RFC 4030,
March 2005.
[6] Rivest, R., "The MD5 Message-Digest Algorithm", RFC 1321, April
1992.
[7] Krawczyk H., Bellare, M. and R. Canetti, "HMAC: Keyed-Hashing for
Message Authentication", RFC 2104, February 1997.