Mobile IPv6 security while traversing a NAT
نویسندگان
چکیده
The mobile Wv6 protocol allows a mobile node to move from one link to another without changing the mobile node’s home address by using a care-of address. When a mobile node moves to a foreign link bebind a NAT, it uses a local-scope care-of address, which bas been allocated by a foreign router dominating the visited nehvork, as identification of itself. On the other hand, other nodes outside the NAT are going to identify the mobile node by a public care-of address translated into from the local-scope care-of address by the NAT. As each security mechanism running over mobile IPv6 relies on the IP address information, it brings about many critical problems. Therefore, io this paper, we propose some modifications to the legacy mobility messages by just adding single flag to address incompatibilities caused by NAT-deployment. With the new proposed mechanism, we can provide secure and seamless IPv6 mobility services regardless of the mobile node’s current point of attacbment to the Internet, even though it is located behind a NAT.
منابع مشابه
For a Secure Mobile IP and Mobile IPv6 Deployment
This paper addresses the security problems raised by the introduction of Mobile IP and Mobile IPv6 protocols into existing networks. First, a protocol-based analysis highlights several malicious attacks like masquerade, and denial of service. Then a classical network architecture is studied for the best placements of mobility entities from the security point of view. Firewalls and, possibly NAT...
متن کاملNAT Traversal Capability and Keep-Alive Functionality with IPSec in IKEv2 Implementation
Since IPv4 Private Networks are behind NAT (Network Address Translation) devices. So, to bypass the Binding Update and Binding Acknowledgment by NAT, we need to encapsulate it in UDP (User datagram Protocol) Packets. Hence, the Dual Stack Mobile IPv6 should support NAT Traversal and Detection. So for proper securing and fully functionality of NAT traversal, it should be IP Security Protected. P...
متن کاملToward an IPv6 world in mobile networks – mechanisms for IPv4 to IPv6 transition
connected hosts reduce this effectiveness, as do many web applications that demand multiple ports. NAT also introduces further complications (Box B). Nevertheless, many mobile networks employ NAT today, and more will do so in the future. While NAT was devised as a shortterm solution, the IETF defined the next version of IP, IPv6, as the long-term solution for the address shortage. IPv6 has nume...
متن کاملDynamic Index NAT as a Mobility Solution in OMNeT++
Mobility in wireless networks causes a major issue from the IP-addressing perspective. When a Mobile Node (MN) moves to another subnet, it will probably get assigned a new IP address. This causes a routing problem since the MN will not be reachable with its previous IP address known to the other communication party. Real time applications might suffer from connection drops, which is recognized ...
متن کاملSecured Route Optimization and Micro-mobility with Enhanced Handover Scheme in Mobile IPv6 Networks
خسارات وارد شده به شبکه گاز شهری در یک زلزله میتواند زیانهای زیادی از جمله خسارت ناشی از آتشسوزی در شبکه زیر ساخت، و خسارت ناشی از قطع خدمات رسانی، تعمیر و تعویض اعضای شبکه، را در بر داشته باشد. در این مقاله یک مدل آتشسوزی پیشنهاد شده است. مدل پیشنهادی در یک مدل نیمه احتمالاتی مرسوم برای برآورد خسارتهای مختلف ناشی از آسیب دیدن شبکه گاز شهری، به کار برده شده است. هدف از این کار توسعه یک ابز...
متن کامل