Long-Sheng Li, Shr-Shiuan Tzeng, Rui-Chung Bai, Mengxia Li
{"title":"网络移动中的端到端安全与路径安全","authors":"Long-Sheng Li, Shr-Shiuan Tzeng, Rui-Chung Bai, Mengxia Li","doi":"10.1109/ICPPW.2011.35","DOIUrl":null,"url":null,"abstract":"At RFC 3776, IP security protocol (IPsec) has been implemented in mobile IP for securing IP datagram at IP layer. Previous research only considered the traffic between mobile node (MN) and home agent (HA), but the traffic from HA to correspondent node (CN) was not considered. Network Mobility (NEMO) is based on Mobile IPv6 (MIPv6), so it inherits the same problem of only providing protection between mobile router (MR) and MR_HA. This paper aims to improve the security vulnerability by proposing a nested IPsec Encapsulating Security Payload (ESP) scheme capable of establishing nested IPsec ESP from MN to CN. The proposed scheme obviously enhances security with confidentiality and integrity in NEMO.","PeriodicalId":173271,"journal":{"name":"2011 40th International Conference on Parallel Processing Workshops","volume":"56 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2011-09-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":"{\"title\":\"End to End Security and Path Security in Network Mobility\",\"authors\":\"Long-Sheng Li, Shr-Shiuan Tzeng, Rui-Chung Bai, Mengxia Li\",\"doi\":\"10.1109/ICPPW.2011.35\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"At RFC 3776, IP security protocol (IPsec) has been implemented in mobile IP for securing IP datagram at IP layer. Previous research only considered the traffic between mobile node (MN) and home agent (HA), but the traffic from HA to correspondent node (CN) was not considered. Network Mobility (NEMO) is based on Mobile IPv6 (MIPv6), so it inherits the same problem of only providing protection between mobile router (MR) and MR_HA. This paper aims to improve the security vulnerability by proposing a nested IPsec Encapsulating Security Payload (ESP) scheme capable of establishing nested IPsec ESP from MN to CN. The proposed scheme obviously enhances security with confidentiality and integrity in NEMO.\",\"PeriodicalId\":173271,\"journal\":{\"name\":\"2011 40th International Conference on Parallel Processing Workshops\",\"volume\":\"56 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2011-09-13\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"7\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2011 40th International Conference on Parallel Processing Workshops\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICPPW.2011.35\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2011 40th International Conference on Parallel Processing Workshops","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICPPW.2011.35","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
End to End Security and Path Security in Network Mobility
At RFC 3776, IP security protocol (IPsec) has been implemented in mobile IP for securing IP datagram at IP layer. Previous research only considered the traffic between mobile node (MN) and home agent (HA), but the traffic from HA to correspondent node (CN) was not considered. Network Mobility (NEMO) is based on Mobile IPv6 (MIPv6), so it inherits the same problem of only providing protection between mobile router (MR) and MR_HA. This paper aims to improve the security vulnerability by proposing a nested IPsec Encapsulating Security Payload (ESP) scheme capable of establishing nested IPsec ESP from MN to CN. The proposed scheme obviously enhances security with confidentiality and integrity in NEMO.