Browse > Article

An Improvement of Mobile IPv6 Binding Update Protocol Using Address Based Keys  

You, Il-Sun (Department of Information Science, Korean Bible University)
Choi, Sung-Kyo (Department of Computer Engineering, National Samcheok University)
Publication Information
Abstract
Recently, a mobile IPv6 binding update protocol using Address Based Keys (BU-ABK) was proposed. This protocol applies Address Based Keys (ABK), generated through identity-based cryptosystem, to enable strong authentication and secure key exchange without any global security infrastructure. However, because it cannot detect that public cryptographic parameters for ABKs are altered or forged, it is vulnerable to man-in-the-middle attacks and denial of service attacks. Furthermore, it has heavy burden of managing the public cryptographic parameters. In this paper, we show the weaknesses of BU-ABK and then propose an enhanced BU-ABK (EBU-ABK). Furthermore, we provide an optimization for mobile devices with constraint computational power. The comparison of EBU-ABK with BU-ABK shows that the enhanced protocol achieves strong security while not resulting in heavy computation overhead on a mobile node.
Keywords
Mobile IP Version 6(MIPv6); Binding Updates; ABKs; RR; CGA;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Pekka Nikander, Tuomas Aura, Jari Arkko and Gabriel Montenegro, 'Mobile IP version 6 (MIPv6) Route Optimization Security Design,' Proceedings of IEEE Vehicular Technology Conference Fall 2003, Orlando, FL USA, October 2003. IEEE Press   DOI
2 R. Housley, W. Ford, T. Polk, and D. Solo, 'Internet X.509 public key infrastructure certificate and CRL profile,' RFC 2459, Jan, 1999
3 T. Narten, E. Nordmark, and W. Simpson, 'Neighbor Discovery for IP Version 6 (IPv6),'RFC 2461, Dec. 1998
4 G. Montenegro, C. Castelluccia, 'SUCV Identifiers and Addresses,' IETF, , Nov. 2001. Work in progress
5 D. Johnson, C. Perkins and J. Arkko, 'Mobility Support in IPv6,' IETF, , Jun. 2003. Work in progress
6 T. Aura, 'Cryptographically Generated Addresses (CGA),' IETF, , Aug. 2003. Work in progress
7 M. Roe, T. Aura, G. O'Shea, and J. Arkko, 'Authentication of Mobile IPv6 Binding Updates and Acknowledgments,' IETF, , Feb. 2002. Work in progress
8 S. Okazaki, A. Desai, C. Gentry and et.el., 'Securing MIPv6 Binding Updates Using Address Based Keys (ABKs),' IETF, , Oct. 2002. Work in progress
9 J. Arkko, 'Security Framework for Mobile IPv6 Route Optimization,' IETF, , Nov. 2001. Work in progress
10 R. Deng, J. Zhou, and F. Bao, 'Defending Against Redirect attacks in Mobile IP,'Proceedings of the 9th ACM Conference on Computer and Communications Security, Nov.2002   DOI
11 G. O'Shea and M. Roe, 'Child-proof authentication for MIPv6 (CAM),' ACM Computer Communications Review, Vol. 31, No. 2, April 2001   DOI