作者
Alberto García Martínez, Marcelo Gabriel Bagnulo Braun, Arturo Azcorra Saloña
发表日期
2005
简介
In this note, we propose a security mechanism for protecting IPv6 networks from possible abuses caused by the malicious usage of a multihoming protocol. In the presented approach, each multihomed node is assigned multiple prefixes from its upstream providers, and it creates the interface identifier part of its addresses by incorporating a cryptographic one-way hash of the available prefix set. The result is that the addresses of each multihomed node form an unalterable set of intrinsically bound IPv6 addresses. This allows any node that is communicating with the multihomed node to securely verify that all the alternative addresses proposed through the multihoming protocol are associated to the address used for establishing the communication. The verification process is extremely efficient because it only involves hash operations
引用总数
200520062007200820092010201120122013201420151343124121
学术搜索中的文章
M Bagnulo, A García-Martínez, A Azcorra - ACM SIGCOMM Computer Communication Review, 2005
A García Martínez, MG Bagnulo Braun… - 2005