首页> 外文会议>International conference on computational science and technology >Proposed DAD-match Mechanism for Securing Duplicate Address Detection Process in IPv6 Link-Local Network Based on Symmetric-Key Algorithm
【24h】

Proposed DAD-match Mechanism for Securing Duplicate Address Detection Process in IPv6 Link-Local Network Based on Symmetric-Key Algorithm

机译:提出了一种基于对称密钥算法的DAD匹配机制,以确保IPv6链路局域网中重复地址检测过程的安全

获取原文

摘要

Duplicate address detection (DAD) is an essential procedure of neighbor discovery protocol (NDP). Further, DAD process decides in case an IP address is in conflict with other nodes. In usual DAD process, the target address to be identified is multicast via the network, which provides an ability for malicious nodes to attack. A malicious node can send a spoofing reply to prevent the address configuration of a normal node, and thus, a denial of service (DoS) attack is launched. This study proposes a new mechanism to hide the target address in DAD, which prevents an attack node from reaching target node. If the address of a normal node is identical to the detection address, then its IP address should be able to decrypt the random word and compare the decryption with decryption in 'DADmatch' tag. Consequently, DAD can be successfully completed. This process is called DAD-match. We expect DAD-match will provide a lightweight security resolution and less complexity as well as fully prevent of DoS attacks during DAD process in IPv6 link-local network.
机译:重复地址检测(DAD)是邻居发现协议(NDP)的基本过程。此外,如果IP地址与其他节点发生冲突,则DAD流程会​​做出决定。在通常的DAD过程中,要识别的目标地址是通过网络多播的,这为恶意节点提供了攻击的能力。恶意节点可以发送欺骗回复,以阻止普通节点的地址配置,因此,发起了拒绝服务(DoS)攻击。这项研究提出了一种在DAD中隐藏目标地址的新机制,该机制可以防止攻击节点到达目标节点。如果正常节点的地址与检测地址相同,则其IP地址应该能够解密随机字并将解密与“ DADmatch”标签中的解密进行比较。因此,DAD可以成功完成。此过程称为DAD匹配。我们希望DAD匹配将提供轻量级的安全解决方案,并降低复杂性,并在IPv6链接本地网络的DAD过程中完全防止DoS攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号