{"title":"一种地址管理机制,用于阻止IPv6网络中的外部通信","authors":"Sora Son, Sangwook Bae, Shimin Sun, Sunyoung Han","doi":"10.1109/ECTICON.2014.6839902","DOIUrl":null,"url":null,"abstract":"IPv6 has been developed to deal with the increase in number of hosts in the Internet. IPv6 address can be assigned to any network devices. IPv6 provides new function called SLAAC (Stateless Address Auto Configuration). SLAAC is a significant feature for host itself generating and configuring own addresses to enable communication. But this feature has drawbacks in term of security and management of networks. In this paper, we propose a blocking mechanism for malicious hosts using the feature of RA message in ICMPv6 (Internet Control Message Protocol version 6). It was experimented using Emulab testbed environment. And the result show that it can block malicious hosts successfully.","PeriodicalId":347166,"journal":{"name":"2014 11th International Conference on Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology (ECTI-CON)","volume":"12 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-05-14","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"An address management mechanism for blocking external communications in IPv6 networks\",\"authors\":\"Sora Son, Sangwook Bae, Shimin Sun, Sunyoung Han\",\"doi\":\"10.1109/ECTICON.2014.6839902\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"IPv6 has been developed to deal with the increase in number of hosts in the Internet. IPv6 address can be assigned to any network devices. IPv6 provides new function called SLAAC (Stateless Address Auto Configuration). SLAAC is a significant feature for host itself generating and configuring own addresses to enable communication. But this feature has drawbacks in term of security and management of networks. In this paper, we propose a blocking mechanism for malicious hosts using the feature of RA message in ICMPv6 (Internet Control Message Protocol version 6). It was experimented using Emulab testbed environment. And the result show that it can block malicious hosts successfully.\",\"PeriodicalId\":347166,\"journal\":{\"name\":\"2014 11th International Conference on Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology (ECTI-CON)\",\"volume\":\"12 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2014-05-14\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2014 11th International Conference on Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology (ECTI-CON)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ECTICON.2014.6839902\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2014 11th International Conference on Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology (ECTI-CON)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ECTICON.2014.6839902","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
摘要
IPv6的发展是为了应对互联网中主机数量的增加。IPv6地址可以分配给任何网络设备。IPv6提供了名为SLAAC(无状态地址自动配置)的新功能。SLAAC是主机本身生成和配置自己的地址以启用通信的重要特性。但是这种特性在网络的安全性和管理方面存在缺陷。本文利用ICMPv6 (Internet Control message Protocol version 6)中的RA消息特性,提出了一种针对恶意主机的拦截机制,并在Emulab测试平台环境下进行了实验。实验结果表明,该算法能够成功拦截恶意主机。
An address management mechanism for blocking external communications in IPv6 networks
IPv6 has been developed to deal with the increase in number of hosts in the Internet. IPv6 address can be assigned to any network devices. IPv6 provides new function called SLAAC (Stateless Address Auto Configuration). SLAAC is a significant feature for host itself generating and configuring own addresses to enable communication. But this feature has drawbacks in term of security and management of networks. In this paper, we propose a blocking mechanism for malicious hosts using the feature of RA message in ICMPv6 (Internet Control Message Protocol version 6). It was experimented using Emulab testbed environment. And the result show that it can block malicious hosts successfully.