首页> 外文会议>Annual IEEE India Conference >Host based IDS for NDP related attacks:NS and NA Spoofing
【24h】

Host based IDS for NDP related attacks:NS and NA Spoofing

机译:基于主机的NDP相关攻击ID:NS和NA欺骗

获取原文

摘要

To accommodate more hosts in the network, IP Version 6 (IPv6) is used. It also allows flexibility in allocating addresses and efficient routing for internet traffic using Stateless Autoconfiguration method (SLAAC) and Neighbor Discovery Protocol (NDP). Although efficient, NDP and SLAAC represent a significant security risk in IPv6. IPSec, which is mandated by the IPv6 specifications for security, is not suited to easily secure Ipv6 messages because of the need to manually configure the IPSec keys. Without IPSec protection, IPv6 messages can be easily spoofed. In this paper we propose a host based IDS using active detection technique for IPv6 (NDP). In this scheme we verify any change made in host cache using either data tables (passive) or by sending active probes in real time. The scheme is successfully validated in a test bed with various attack scenarios and the results show the effectiveness of the proposed technique.
机译:为了适应网络中的更多主机,使用IP版本6(IPv6)。它还允许使用无状态自动配置方法(SLAAC)和邻居发现协议(NDP)来分配地址和有效路由的互联网流量。虽然高效,NDP和SLAAC代表了IPv6中的大量安全风险。 IPSEC由IPv6 Security的IPv6规范要求,不适合轻松安全地保护IPv6消息,因为需要手动配置IPsec键。如果没有IPSec保护,IPv6消息可以很容易地欺骗。在本文中,我们向IPv6(NDP)的主动检测技术提出了基于主机的ID。在该方案中,我们使用数据表(被动)或通过实时发送有源探针来验证主机缓存中的任何更改。该方案在具有各种攻击情景的试验台中成功验证,结果表明了该技术的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号