Browse > Article

Authenticated IPv4 Address Allocation Using Human Recognition in DSTM Server  

Choi, Jae-Duck (숭실대학교 정보통신전자공학부)
Kim, Young-Han (숭실대학교 정보통신전자공학부)
Kwon, Taek-Jung (삼성전자 통신연구소)
Jung, Sou-Hwan (숭실대학교 정보통신전자공학부)
Abstract
DSTM is one of the 1Pv6/IPv4 transition mechanisms using IPv4-in-IPv6 tunneling for communication between IPv6 node with dual stack and Ipv4-only node. In DSTM, the DSTM server using the DHCPv6 is vulnerable to DoS attacks which can exhaust the IPv4 address pool. In this paper, an authentication model using a HRAA (Human Recognition Address Allocation) scheme was proposed to protect DHCP server against DoS attacks. The proposed authentication model in DSTM that uses an image file for verification is effective because only human can respond to the challenge for authenticated address allocation. The proposed model can be used anytime and anywhere in a DSTM domain, and is secure against DoS attacks.
Keywords
HRAA; DSTM; DHCPv6; Authentication; DoS;
Citations & Related Records
연도 인용수 순위
  • Reference
1 J. Bound, 'Dual Stack IPv6 Dominant Transition Mechanism,' IETF, Internet Draft draft-bound-dstm-exp-04, October 2005
2 R. Droms, J. Bound, B. Volz, T. Lemon, C.Perkins, and M. Carney, 'Dynamic Host Configuration Protocol for IPv6,' IETF, RFC 3315, July 2003
3 T. Komori and T. Saito, 'The Secure DHCP System with User Authentication,' in Proc. LCN2002, November 2002
4 H. Krawczyk, M. Bellare, and R. Canetti, 'HMAC: Keyed-Hashing for Message Authentication,' IETF, RFC 2104, February 1997
5 Internet Systems Consortium, DHCP 3.0.4b, http://www.isc.org/index.pl?/sw/dhcp/
6 R. Droms, 'Authentication for DHCP Messages,' IETF, RFC 3118, June 2001
7 R. Droms, 'Dynamic Host Configuration Protocol,' IETF, RFC 2131, March 1997
8 R. Rivest, 'The MD5 Message-Digest Algorithm,' IETF, RFC 1321, April 1992
9 'Secure Hash Standard,' National Institute of Standards and Technology, FIPS-180-1, April 1995