Secure MAP Discovery Schemes in Hierarchical MIPv6

계층적 Mobile IPv6에서의 안전한 MAP 검색 기법

  • Published : 2007.02.15

Abstract

The Hierarchical Mobile IPv6 (HMIPv6) has been proposed to accommodate frequent mobility of the Mobile Node and to reduce the signaling load. A Mobility Anchor Point is a router located in a network visited by the Mobile Node. The Mobile Node uses the Mobile Anchor Point as a local Home Agent. The absence of any protections between Mobile Node and Mobile Anchor Point may lead to malicious Mobile Nodes impersonating other legitimate ones or impersonating a Mobile Anchor Point. In this paper, we propose a mechanism of the secure Mobile Anther Point discovery in HMIPv6. The performance analysis and the numerical results presented in this paper show that our proposal has superior performance to other methods.

계층적 Mobile IPv6 (HMIPv6)는 기존의 Mobile IPv6의 핸드오프 성능 향상을 위해 IETF에서 제안되었다. 기존의 Mobile IPv6는 핸드오프를 하기위해 교환하는 메시지가 핸드오프의 지연을 발생시키고, 홈 에이전트 (HA: Home Agent)에 핸드오프의 처리 부하가 집중되는 문제가 있다. 계층적 Mobile IPv6는 MAP(Mobility Anchor Point)이라는 노드를 이동 노드(MN: Mobile Node)가 접속하는 지역에 위치시켜, 지역 HA처럼 동작시켜 핸드오프 성능을 향상시킨다. MN과 HA의 연결은 IPsec으로 안전한 반면, MN과 MAP과의 관계는 아직 보안이 미흡하다. MN과 MAP간의 보안이 없다면, 서로에게 정당한 MN인척, 혹은 정당한 MAP인척 하여 여러 가지 보안의 문제를 발생시킬 수 있다. 본 논문은 계층적 Mobile IPv6에서 안전한 MAP을 검색하는 방법을 제안하고, 수학적으로 성능을 분석한다.

Keywords

References

  1. D. B. Johnson and C. E. Perkins, 'Mobility support in IPv6,' IETF RFC 3775, June, 2004
  2. H. Soliman, C. Castelluccia, K. El Malki, 'Hierarchical Mobile IPv6 Mobility Management (HMIPv6),' RFC 4140, Aug. 2005
  3. Kent, S. and R. Atkinson, 'IP Authentication Header,' RFC 2402, Nov. 1998
  4. Sangheon Pack and Yanghee Choi, 'A study on performance of hierarchical mobile IPv6 in IP-based cellular networks,' IEICE Transactions on Communications, vol. E87-B no. 3 pp.462-469, Mar. 2004
  5. I.F. Akyildiz and W. Wang, 'A dynamic location management scheme for next -generation multitier PCS systems,' IEEE Trans. Wireless Commun., vol.1, no.1, pp.178-189, Jan. 2002 https://doi.org/10.1109/7693.975456
  6. M. Woo, 'Performance analysis of mobile IP regional registration,' IEICE Trans. Commun., vol.E86-B, no.2, pp.472-478, Feb. 2003
  7. X. Zhang, J.G. Castellanos, and A.T. Capbell, 'P-MIP: Paging extensions for mobile IP,' ACM Mobile Networks and Applications, vol.7, no.2, pp.127-141, 2002 https://doi.org/10.1023/A:1013774805067
  8. Jose Caldera, Dionisio de Niz, and Junichi Nakagawa 'Performance Analysis of IPsec and IKE For Mobile IP on Wireless Environments,' http://www-2.cs.cmu.edu/-dionisio/personal-publications.html
  9. D. Harkins and D. Carrel, 'The Internet Key Exchange,' IETF RFC 2409, November, 1998
  10. Jonghyoun choi and Youngsong Mun, 'An Efficient Handoff Mechanism with Web Proxy MAP in Hierarchical Mobile IPv6,' ICCSA2005, LNCS 3480, pp.271-280, May 2005
  11. Feng Bao, Robert Deng, Ying Qiu and Jianying Zhou, 'A Scheme for the Security between Mobile Node and Mobility Anchor Point in Hierarchical Mobile IPv6,' IETF Internet draft, draft-qiu-mipshopmn-map-security-00.txt (work in progress), Oct. 2005
  12. W. Haddad and S. Krishnan, 'Combining Cryptographically Generated Address and Crypto-Based Identifiers to Secure HMIPv6,' IETF Internet draft, draft-haddad-mipshop-hmipv6-secwity01 (work in progress), Oct. 2005
  13. J. Arkko, Ed., J. Kempf, B. Zill, P. Nikander, 'SEcure Neighbor Discovery (SEND),' IETF RFC 3971, March, 2005