首页> 外文会议>2012 20th IEEE International Conference on Network Protocols. >A proactive scheme for securing ID/locator split architecture
【24h】

A proactive scheme for securing ID/locator split architecture

机译:一种用于保护ID /定位器拆分体系结构的主动方案

获取原文
获取原文并翻译 | 示例

摘要

The ID/locator split-based approach has been widely recognized as a promising approach for the design of future networks. However, the existing ID/locator split architectures are still vulnerable to various attacks, such as impersonation attacks and man-in-the-middle attacks. They cannot be simply protected by the existing security mechanisms, which have the limitations especially on scalability. To solve these problems, we propose a proactive scheme for securing ID/locator split architecture, which embeds built-in security features to enable proactive protections of the architecture. Through this scheme, hosts register their information to the network securely, obtain trustworthy information of destination hosts, authenticate each other, and securely update their locators without requiring an involvement of a trusted third party (TTP). Compared to other existing security mechanisms, the proposed scheme does not require additional authentication mechanism and it can provide the thorough protections of the whole architecture.
机译:基于ID /定位符拆分的方法已被广泛认为是设计未来网络的有前途的方法。但是,现有的ID /定位器拆分体系结构仍然容易受到各种攻击,例如模拟攻击和中间人攻击。它们不能简单地由现有的安全机制来保护,这些机制尤其在可伸缩性方面具有局限性。为了解决这些问题,我们提出了一种用于保护ID /定位器拆分体系结构的主动方案,该方案嵌入了内置的安全功能以实现对体系结构的主动保护。通过此方案,主机可以安全地将其信息注册到网络,获取目标主机的可信赖信息,彼此进行身份验证,并安全地更新其定位器,而无需涉及受信任的第三方(TTP)。与其他现有的安全机制相比,该方案不需要额外的身份验证机制,并且可以为整个体系结构提供彻底的保护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号