A Localized Authentication, Authorization, and Accounting (AAA) Protocol for Mobile Hotspots
نویسندگان
چکیده
Mobile hotspots, i.e. Internet access services in moving networks (e.g. vehicular area networks (VAN) and personal area networks (PAN)) bring about new challenging issues. Even if the network mobility (NEMO) basic support protocol has been standardized as a mobility solution by the Internet Engineering Task Force (IETF), to the best of our knowledge, no studies have been conducted in the area of authentication, authorization, and accounting (AAA) protocol, which is a core technology for public mobile hotspots. In this paper, we propose a localized AAA protocol to retain the mobility transparency as the NEMO basic support protocol and to reduce the cost of the AAA procedure. In addition to providing mutual authentication, the proposed AAA protocol prevents various threats such as replay attack, man in the middle attack, and key exposure. Also, we develop an analytical model to evalutate the AAA signaling cost. Numerical results reveal that the proposed AAA protocol is a suitable solution for AAA services in different mobile hotspots.
منابع مشابه
Authentication, Authorization, and Accounting (AAA) Goals for Mobile IPv6
In commercial and enterprise deployments, Mobile IPv6 can be a service offered by a Mobility Services Provider (MSP). In this case, all protocol operations may need to be explicitly authorized and traced, requiring the interaction between Mobile IPv6 and the AAA infrastructure. Integrating the Authentication, Authorization, and Accounting (AAA) infrastructure (e.g., Network Access Server and AA...
متن کاملRFC 4721 Mobile IPv 4 Challenge / Response Extensions
Mobile IP, as originally specified, defines an authentication extension (the Mobile-Foreign Authentication extension) by which a mobile node can authenticate itself to a foreign agent. Unfortunately, that extension does not provide the foreign agent any direct guarantee that the protocol is protected from replays and does not allow for the use of existing techniques (such as Challenge Handshake...
متن کاملAuthentication, Authorization, and Accounting (AAA) Registration Keys for Mobile IPv4
Authentication, Authorization, and Accounting (AAA) servers, such as RADIUS and DIAMETER, are in use within the Internet today to provide authentication and authorization services for dial-up computers. Mobile IP for IPv4 requires strong authentication between the mobile node and its home agent. When the mobile node shares an AAA Security Association with its home AAA server, however, it is pos...
متن کاملThe Role of Mobile Device Authentication with respect to Domain overlapping Business Models
In the context of mobility protocols such as Mobile IP, authentication, authorization and accounting (AAA) are challenging problems. Current mobility protocol deployments typically do not span trust boundaries, because there has not been any clear agreement about how network administrators from unrelated enterprises could agree upon to assure mutual security, and compensate each other for resou...
متن کاملRFC 5637 AAA Goals for Mobile IPv
In commercial and enterprise deployments, Mobile IPv6 can be a service offered by a Mobility Services Provider (MSP). In this case, all protocol operations may need to be explicitly authorized and traced, requiring the interaction between Mobile IPv6 and the AAA infrastructure. Integrating the Authentication, Authorization, and Accounting (AAA) infrastructure (e.g., Network Access Server and AA...
متن کامل