首页> 外文期刊>Computers & Security >Design and formal security evaluation of NeMHIP: A new secure and efficient network mobility management protocol based on the Host Identity Protocol
【24h】

Design and formal security evaluation of NeMHIP: A new secure and efficient network mobility management protocol based on the Host Identity Protocol

机译:NeMHIP的设计和正式安全评估:基于主机身份协议的新的安全高效的网络移动性管理协议

获取原文
获取原文并翻译 | 示例

摘要

NEtwork Mobility Basic Support (NEMO BS) is a standardized protocol for managing the mobility of a set of nodes that move together as a whole while having continuous connectivity to the Internet through one or more Mobile Routers (MRs). Because it is based on Mobile IPv6 (MIPv6), it inherits the properties of MIPv6, such as the use of IPsec. However, NEMO BS does not address all the features required by the demanding Intelligent Transportation Systems (ITS) scenario to provide an integrated and global secure mobility management framework. In addition, unlike MIPv6, the routing in NEMO BS is suboptimal, which makes difficult the provision of an adequate service performance. These characteristics make the application of the NEMO BS protocol not optimum in this scenario. An interesting strategy to provide security and good service performance is to consider . a protocol that establishes and maintains Security Associations (SAs), such as the Host Identity Protocol (HIP). Different HIP-based approaches have been denned. However, these HIP-based network mobility solutions still present unsolved issues. In this article, we present a secure and efficient network mobility protocol named NeMHIP. NeMHIP provides secure and optimum mobility management and efficient end-to-end confidentiality and integrity protection apart from the basic security properties inherited from HIP. To evaluate the security provisions of NeMHIP, we have conducted a belief-based formal evaluation. The results demonstrate that the defined security goals are achieved by the protocol. Furthermore, we have performed an automated formal evaluation to validate additional security aspects of NeMHIP. Thus, we have modeled NeMHIP using the AVISPA tool and assessed its security when an intruder is present. The results confirm that NeMHIP is a secure protocol that ensures end-to-end confidentiality and integrity without introducing security leaks to the basic HIP. Thus, we have addressed the need found in the literature for providing security and efficiency in the network mobility scenario.
机译:NEtwork Mobility基本支持(NEMO BS)是一种标准化协议,用于管理一组节点的移动性,这些节点作为整体一起移动,同时通过一个或多个移动路由器(MR)持续连接到Internet。因为它基于移动IPv6(MIPv6),所以它继承了MIPv6的属性,例如IPsec的使用。但是,NEMO BS并未解决苛刻的智能交通系统(ITS)场景所要求的所有功能,以提供集成的全球安全移动管理框架。另外,与MIPv6不同,NEMO BS中的路由是次优的,这使得难以提供足够的服务性能。这些特性使NEMO BS协议的应用在这种情况下不是最佳的。要考虑提供安全性和良好服务性能的有趣策略。建立和维护安全性关联(SA)的协议,例如主机身份协议(HIP)。已经确定了不同的基于HIP的方法。但是,这些基于HIP的网络移动解决方案仍然存在未解决的问题。在本文中,我们提出了一个安全高效的网络移动协议NeMHIP。除继承自HIP的基本安全属性外,NeMHIP还提供安全和最佳的移动性管理以及有效的端到端机密性和完整性保护。为了评估NeMHIP的安全性规定,我们进行了基于信念的正式评估。结果表明,已通过协议实现了已定义的安全目标。此外,我们已经执行了自动化的正式评估,以验证NeMHIP的其他安全性。因此,我们使用AVISPA工具对NeMHIP进行了建模,并在存在入侵者时评估了其安全性。结果证实,NeMHIP是一种安全协议,可确保端到端的机密性和完整性,而不会给基本的HIP带来安全漏洞。因此,我们满足了在文献中发现的在网络移动性场景中提供安全性和效率的需求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号