Integrating Security, Mobility and Multi-Homing in a HIP Way
نویسندگان
چکیده
The current trend in mobile networking is towards mobile hosts that have multiple network interfaces, e.g., WLAN and GPRS. However, when the current Internet architecture was originally designed, neither mobility nor multihoming were considered. In the current architecture an IP address represents both a host’s identity and the host’s topological location. This overloading has led to several security problems, including the so called address ownership problem, making IP mobility and multi-homing unnecessarily hard from the security point of view. In this paper we show how the Host Identity Payload (HIP), being discussed at the IETF, can be used to simultaneously solve the security problems, and many of the practical problems, related to end-host multi-homing and endhost mobility. Basically, HIP introduces a new cryptographic name space and protocol layer between network and transport layers, breaking the fixed binding between identities and locations. The approach is especially suitable for large open networks, where no pre-existing trust relationships can be assumed. We also report our early implementation experiences.
منابع مشابه
HIP Applications InfraHIP Project
This report presents a summary of applications and application areas that are envisaged to benefit from the features of the Host Identity Protocol (HIP). The main three features provided by the HIP protocol are security, mobility support, and multi-homing support. We present the following main scenarios, in which HIP is potentially useful: VPN for road warriors, traditional applications includi...
متن کاملHost Identity Payload for Mobility and Security
The current Internet is based on architecture created years ago. This architecture does not provide good support for mobility and security. Host Identity Payload (HIP) is a new proposal that introduces a cryptographically based namespace and a protocol between the transport and internetworking layers. The new namespace breaks the fixed binding between host identities and host locations. In addi...
متن کاملStress Testing of Host Identity Protocol (hip) Implementations
The Host Identity Protocol (HIP) was introduced almost a decade ago. There are three interoperating software implementations. HIP provides mobility and multi-homing in a secure way to the Internet hosts. Several studies evaluated the duration of HIP association establishment and mobility updates. In this paper, we perform stress testing of available HIP implementations on a multiprocessor serve...
متن کاملWeak Context Establishment Procedure for Mobility and Multi-Homing Management
Trust establishment seems to be the most difficult problem in mobility and multi-homing management. Many protocol proposals assume the presence of some security infrastructure (e.g. a Public-Key Infrastructure). However, building such a global infrastructure has not taken place, maybe because it would be too expensive and difficult to deploy. In this paper, we introduce a security context estab...
متن کاملSecure Mobile IP with HIP Style Handshaking and Readdressing for public-key based IP network
Mobile IP allows a mobile node to roam into a foreign IP network without losing its connection with its peer. Mobile IPv6 uses Route Optimization to improve the routing performance by avoiding the triangle routing problem and adopting Return Routability as a secure process for binding update. Host Identity Protocol (HIP) is an experimental security protocol which provides mobility management an...
متن کامل