Browse > Article

An Efficient and Secure Handover Mechanism for MVPN Services  

Woo, Hyun-Je (이화여자대학교 컴퓨터학과)
Kim, Kyoung-Min (이화여자대학교 컴퓨터학과)
Lee, Mee-Jeong (이화여자대학교 컴퓨터학과)
Abstract
Mobile Virtual Private Network (MVPN) provides VPN services without geographical restriction to mobile workers using mobile devices. Coexistence of Mobile IP (MIP) protocol for mobility and IPsec-based VPN technology are necessary in order to provide continuous VPN service to mobile users. However, Problems like registration failure or frequent IPsec tunnel re-negotiation occur when IPsec-based VPN Gateway (GW) and MIP are used together. In order to solve these problems, IETF proposes a mechanism which uses external home agent (x-HA) located external to the corporate VPN GW. In addition, based on the IETF proposal, a mechanism that assigns x-HA dynamically in the networks where MN is currently located was also proposed with the purpose to reduce handover latency as well as end-to-end delay. However, this mechanism has problems such as exposure of a session key for dynamic Mobility Security Association (MSA) or a long latency in case of the handover between different networks. In this paper, we propose a new MVPN protocol in order to minimize handover latency, enhance the security in key exchange, and to reduce data losses cause by handover. Through a course of simulation, the performance of proposed protocol is compared with the existing mechanism.
Keywords
Mobile Virtual Private Network (MVPN); Diffie-Hellman Key Agreement Algorithm; Diameter MIPv4 Application;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Adrangi, F., 'Problem Statement: Mobile IPv4 Traversal of Virtual Private Network (VPN) Gateways,' RFC4093, 2005
2 Calhoun, P., 'Diameter Base Protocol,' RFC3588, 2003
3 V. Devarapalli, P. Eronen, 'Secure Connectivity and Mobility using Mobile IPv4 and MOBIKE,' draft, 2006
4 Calhoun, P., 'Diameter Mobile IPv4 Application,' RFC4004, 2005
5 P. Eronen, 'IKEv2 Mobility and Multihoming Protocol (MOBIKE),' draft, 2006
6 Craig Shue, 'Analysis of IPsec Overheads for VPN Servers,' 1st IEEE ICNP Workshop, 2005
7 Rescorla, E., 'Diffie- Hellman Key Agreement Method,' RFC2631, 1999
8 Vaarala, S., 'Mobile IPv4 Traversal Across IPsec-based VPN Gateways,' draft, 2005
9 Yi-Wen Liu, 'dynamic external Home Agent Assignment in Mobile VPN,' Vehicular Technology Conference, 2004