{"title":"Encryption and verification scheme of source IPv6 address between Internet domains","authors":"Longfei Zhen, Ke Ma","doi":"10.1109/CCNS53852.2021.00032","DOIUrl":null,"url":null,"abstract":"Source address verification is to prevent nodes on the same link from deceiving each other’s IP addresses, to prevent hackers from gaining the trust of each other’s terminals, and then controlling the terminals, thus avoiding the penetration of attacks. Based on this, this paper proposes an inter-domain source IPv6 address encryption and verification scheme based on HMAC (HMAC-SAV). The verification scheme verifies the origin of data from transmission path and source/destination-end and identifies the authenticity of data packets. It makes up for the shortcomings of traditional Ingress/Egress filtering, thus preventing IP address spoofing attacks. Through the test vector evaluation of the HMAC-SAV scheme, it is proved that this scheme is a feasible and effective source address verification scheme with multiple verification methods.","PeriodicalId":142980,"journal":{"name":"2021 2nd International Conference on Computer Communication and Network Security (CCNS)","volume":"10 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 2nd International Conference on Computer Communication and Network Security (CCNS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CCNS53852.2021.00032","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Source address verification is to prevent nodes on the same link from deceiving each other’s IP addresses, to prevent hackers from gaining the trust of each other’s terminals, and then controlling the terminals, thus avoiding the penetration of attacks. Based on this, this paper proposes an inter-domain source IPv6 address encryption and verification scheme based on HMAC (HMAC-SAV). The verification scheme verifies the origin of data from transmission path and source/destination-end and identifies the authenticity of data packets. It makes up for the shortcomings of traditional Ingress/Egress filtering, thus preventing IP address spoofing attacks. Through the test vector evaluation of the HMAC-SAV scheme, it is proved that this scheme is a feasible and effective source address verification scheme with multiple verification methods.