Enhanced Single Packet Authorization System via Dynamic Input Port Allocation Using One-Time Passwords
摘要
Single Packet Authorization (SPA) technology is the central mechanism that implements the pre-authentication and post-association functionalities of the Software Defined Perimeter. At present, SPAs are transmitted via a specific port, which enables malicious observers to deduce the SPA port and carry out Denial of Service (DoS) attacks, collect SPAs, or insert malicious SPAs. To address this issue, our paper suggests a method of dynamically specifying the SPA port using OTP. Following the implementation of the SPA system according to the most recent SDP 2.0 specifications, experiments were conducted, and the results analyzed. It was determined that the proposed approach is feasible and effectively addresses the issue at hand.