Liancheng Zhang, Jianping Sun, Juwei Yan, Yi Guo, Lanxin Cheng, Wenwen Du
{"title":"CGA Configuration Detection Method of IPv6 Nodes by Combining Active Probing with Passive Sniffing","authors":"Liancheng Zhang, Jianping Sun, Juwei Yan, Yi Guo, Lanxin Cheng, Wenwen Du","doi":"10.1109/ICCT56141.2022.10072432","DOIUrl":null,"url":null,"abstract":"To ensure the security of neighbor discovery messages and processes, IPv6 subnets are increasingly deploying secure neighbor discovery (SEND) mechanisms. Although the cryptographically generated address (CGA) mechanism is the operating basis of the SEND mechanism, there is currently no technology or method for CGA configuration detection. To this end, the difficult problems lacking of CGA configuration detection method (such as the constraints caused by built-in neighbor discovery mechanism, identification of different SEND transition scenes, IPv6 address transformation) are analyzed through the in-depth analysis of the SEND mechanism and the CGA mechanism. Moreover, a CGA configuration detection method of IPv6 nodes by combining active probing and passive sniffing (CCD6-APPS) is proposed. Based on active probing and passive sniffing of active IPv6 nodes in the target IPv6 subnet, the proposed CCD6-APPS method can learn the SEND implementation methods and CGA configuration parameters of IPv6 nodes, and finally detect the coverage of SEND nodes in the target IPv6 subnet. By setting up a typical IPv6 neighbor discovery experimental environment and conducting targeted tests, the experimental results prove the effectiveness of the SSD6-APPS method, and the additional impact on the target IPv6 subnet is very small.","PeriodicalId":294057,"journal":{"name":"2022 IEEE 22nd International Conference on Communication Technology (ICCT)","volume":"99 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-11-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE 22nd International Conference on Communication Technology (ICCT)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCT56141.2022.10072432","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
To ensure the security of neighbor discovery messages and processes, IPv6 subnets are increasingly deploying secure neighbor discovery (SEND) mechanisms. Although the cryptographically generated address (CGA) mechanism is the operating basis of the SEND mechanism, there is currently no technology or method for CGA configuration detection. To this end, the difficult problems lacking of CGA configuration detection method (such as the constraints caused by built-in neighbor discovery mechanism, identification of different SEND transition scenes, IPv6 address transformation) are analyzed through the in-depth analysis of the SEND mechanism and the CGA mechanism. Moreover, a CGA configuration detection method of IPv6 nodes by combining active probing and passive sniffing (CCD6-APPS) is proposed. Based on active probing and passive sniffing of active IPv6 nodes in the target IPv6 subnet, the proposed CCD6-APPS method can learn the SEND implementation methods and CGA configuration parameters of IPv6 nodes, and finally detect the coverage of SEND nodes in the target IPv6 subnet. By setting up a typical IPv6 neighbor discovery experimental environment and conducting targeted tests, the experimental results prove the effectiveness of the SSD6-APPS method, and the additional impact on the target IPv6 subnet is very small.