next up previous
Next: Can MultiNet be done Up: Discussion Previous: Reducing the Switching Overhead

Network Port Based Authentication

The IEEE 802.1X is a port based authentication protocol that is becoming popular for enterprise wireless LANs. For MultiNet to be useful in all environments it has to support this authentication protocol. However, the supplicant 802.1X protocol is implemented in the Wireless Zero Configuration Service (WZC) for Windows XP, and we had to turn off WZC for MultiNet to work. Only minor changes are needed in WZC for it to work with MultiNet. However, achieving good performance with IEEE 802.1X is difficult. We measured the overhead of the IEEE 802.1X authentication protocol and found it to be approximately 600 ms. It is clear that we need to prevent the card from going through a complete authentication procedure every time it switches across IEEE 802.1X enabled networks. We can eliminate the authentication cycles by storing the IEEE 802.1X state in the MPD and using this state instead of redoing the authentication procedure. Further, the IEEE 802.11 standard recommends an optimization called `Preauthentication' for the APs. Preauthentication works by having the APs maintain a list of authenticated nodes. When implemented, this optimization will eliminate the authentication overhead every time the wireless card switches to an 802.1X enabled network.


next up previous
Next: Can MultiNet be done Up: Discussion Previous: Reducing the Switching Overhead
Ranveer 2004-11-12