An SDN-Based Authentication Mechanism for Securing Neighbor Discovery Protocol in IPv6

Joint Authors

Lu, Y.
Wang, Meng
Huang, Pengsen

Source

Security and Communication Networks

Issue

Vol. 2017, Issue 2017 (31 Dec. 2017), pp.1-9, 9 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2017-01-24

Country of Publication

Egypt

No. of Pages

9

Main Subjects

Information Technology and Computer Science

Abstract EN

The Neighbor Discovery Protocol (NDP) is one of the main protocols in the Internet Protocol version 6 (IPv6) suite, and it provides many basic functions for the normal operation of IPv6 in a local area network (LAN), such as address autoconfiguration and address resolution.

However, it has many vulnerabilities that can be used by malicious nodes to launch attacks, because the NDP messages are easily spoofed without protection.

Surrounding this problem, many solutions have been proposed for securing NDP, but these solutions either proposed new protocols that need to be supported by all nodes or built mechanisms that require the cooperation of all nodes, which is inevitable in the traditional distributed networks.

Nevertheless, Software-Defined Networking (SDN) provides a new perspective to think about protecting NDP.

In this paper, we proposed an SDN-based authentication mechanism to verify the identity of NDP packets transmitted in a LAN.

Using the centralized control and programmability of SDN, it can effectively prevent the spoofing attacks and other derived attacks based on spoofing.

In addition, this mechanism needs no additional protocol supporting or configuration at hosts and routers and does not introduce any dedicated devices.

American Psychological Association (APA)

Lu, Y.& Wang, Meng& Huang, Pengsen. 2017. An SDN-Based Authentication Mechanism for Securing Neighbor Discovery Protocol in IPv6. Security and Communication Networks،Vol. 2017, no. 2017, pp.1-9.
https://search.emarefa.net/detail/BIM-1203008

Modern Language Association (MLA)

Lu, Y.…[et al.]. An SDN-Based Authentication Mechanism for Securing Neighbor Discovery Protocol in IPv6. Security and Communication Networks No. 2017 (2017), pp.1-9.
https://search.emarefa.net/detail/BIM-1203008

American Medical Association (AMA)

Lu, Y.& Wang, Meng& Huang, Pengsen. An SDN-Based Authentication Mechanism for Securing Neighbor Discovery Protocol in IPv6. Security and Communication Networks. 2017. Vol. 2017, no. 2017, pp.1-9.
https://search.emarefa.net/detail/BIM-1203008

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1203008