Encryption and verification scheme of source IPv6 address between Internet domains

Longfei Zhen, Ke Ma
{"title":"Encryption and verification scheme of source IPv6 address between Internet domains","authors":"Longfei Zhen, Ke Ma","doi":"10.1109/CCNS53852.2021.00032","DOIUrl":null,"url":null,"abstract":"Source address verification is to prevent nodes on the same link from deceiving each other’s IP addresses, to prevent hackers from gaining the trust of each other’s terminals, and then controlling the terminals, thus avoiding the penetration of attacks. Based on this, this paper proposes an inter-domain source IPv6 address encryption and verification scheme based on HMAC (HMAC-SAV). The verification scheme verifies the origin of data from transmission path and source/destination-end and identifies the authenticity of data packets. It makes up for the shortcomings of traditional Ingress/Egress filtering, thus preventing IP address spoofing attacks. Through the test vector evaluation of the HMAC-SAV scheme, it is proved that this scheme is a feasible and effective source address verification scheme with multiple verification methods.","PeriodicalId":142980,"journal":{"name":"2021 2nd International Conference on Computer Communication and Network Security (CCNS)","volume":"10 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 2nd International Conference on Computer Communication and Network Security (CCNS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CCNS53852.2021.00032","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Source address verification is to prevent nodes on the same link from deceiving each other’s IP addresses, to prevent hackers from gaining the trust of each other’s terminals, and then controlling the terminals, thus avoiding the penetration of attacks. Based on this, this paper proposes an inter-domain source IPv6 address encryption and verification scheme based on HMAC (HMAC-SAV). The verification scheme verifies the origin of data from transmission path and source/destination-end and identifies the authenticity of data packets. It makes up for the shortcomings of traditional Ingress/Egress filtering, thus preventing IP address spoofing attacks. Through the test vector evaluation of the HMAC-SAV scheme, it is proved that this scheme is a feasible and effective source address verification scheme with multiple verification methods.
Internet域间源IPv6地址的加密和验证方案
源地址验证是为了防止同一链路上的节点相互欺骗IP地址,防止黑客获取对方终端的信任,进而控制终端,从而避免攻击的渗透。在此基础上,提出了一种基于HMAC的域间源IPv6地址加密与验证方案(HMAC- sav)。验证方案从传输路径和源/目的端验证数据的来源,识别数据包的真实性。它弥补了传统入口/出口过滤的不足,防止IP地址欺骗攻击。通过对HMAC-SAV方案的测试向量评估,证明该方案是一种可行有效的源地址验证方案,具有多种验证方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信