Availability Analysis and Improvements for WAPI

This paper analyzes the security of the establishment procedure of WAPI security association.Since the WA- PI design does not emphasize its availability,it is possible to introduce several DoS attacks.We detail the DoS attacks on unprotected management frames and propose some reasonable countermeasures.In order to enhance the robust and availability,some tradeoffs in failure-recovery strategies are discussed and an improved variant of WAPI is proposed to maintain its primary structure and encapsulation and address all the discussed vulnerabilities.