|
ABSTRACT
As like as wired communication and mobile ad hoc networking, mobile IP communication is also vulnerable to different kinds of attack. Among different kinds of attack Denial-of-Service (DoS) is a great threat for mobile IP communication. In this paper we proposed to imply a lightweight packet filtering technique in different domains and base stations of mobile IP communication. If there is any packet containing spoofed IP address created by DoS attackers, our scheme can detect and then filters the suspected packets. We evaluated the performance of our proposed scheme using ns-2. The results indicate that our proposed scheme can significantly reduce the effect of DoS attacks and improves performance of mobile IP communication.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Nikander, P., Arkko, J., Aura, T., Montenegro, G., "Mobile IP version 6(MIPv6) Route Optimization Security Design", Vehicular Technology Conference, 2003. VTC 2003-Fall. 2003 IEEE 58th volume 3, Issue, 6-9 Oct. 2003 Page(s): 2004-2008.
|
| |
2
|
Habib, A., Hafeeda, M.H, and Bhargava, B., "Detecting Service Violation and DoS Attacks", In Proc. of Network and Distributed System Security Symposium (NDSS), 2003.
|
| |
3
|
Gupta, V., Krishnamurthy, S., and Faloutsos, M., "Denial of Service Attacks at the MAC Layer in Wireless Ad Hoc Networks", In Proc. of MILCOM, 2002.
|
| |
4
|
Braun, T., and Danzeisen, M., "Access to Mobile IP Users to Firewall Protected VPNs", Workshop on Wireless Local Networks at the 26th Annual IEEE Conference on Local Computer Networks (LCN'2001).
|
| |
5
|
Zao, J.K., M. Condell, "Use of IP Sec in Mobile IP", Mobile IP Internet Draft, draf-itef-mobileip-ipsec-use-0 0.txt, November 1997.
|
| |
6
|
Gupta, V., Montenegro, G., "Secure Mobile Networking, Mobile Networks and Applications", Volume 3, Issue 4 (1998) table of contents,Special issue: mobile networking in the Internet, Pages: 381--390.
|
| |
7
|
Inoue, A., Ishiyama, Fukumoto, A., and Okamoto, T., "Secure Mobile IP using IP Security Primitives", IEEE 6th Workshop on Enabling Technologies: Infrastructure for Collaborative Enterprises, 1997, PP: 235--241.
|
| |
8
|
Deng, R.H., Zhou,J., Bao,F., "Defending Against Redirect Attacks in Mobile IP", Proceedings of the 9th ACM conference on Computer and Communications Security, November 2002.
|
| |
9
|
Denko, M.K., "Detection and Prevention of DoS Attacks in Mobile Ad Hoc Networks using Reputation-Based Incentive Scheme", Systemics, Cybernetics and informatics, Volume 3-Number 4.
|
| |
10
|
Han, S., Chang, E., Gao, L., Dillon, T., "Taxonomy of Attacks on Wireless Sensor Networks", in the Proceedings of the 1st European Conference on Computer Network Defence (EC2ND), Springer Press.
|
| |
11
|
McCanne, S., and Floyd, S., Network Simulator, http://www.mash.cs.berkley.edu/ns/.
|
| |
12
|
Greis, M., "Marc Greis's Tutorial", http://www.isi.edu/nsnam/ns/tutorial/index.html.
|
| |
13
|
Han, S., Tian, B., He, M., Chang, E., "Efficient Threshold Self-healing Key Distribution with Sponsorization for Infrastructureless Wireless Networks", IEEE Transactions on Wireless Communications, Vol. 8, No. 4, pp. 1876--1887.
|
| |
14
|
Chung, J., and Claypool, M., NS by Example, http://nile.wpi.edu/NS/
|
| |
15
|
Altman, E., and Jimenez, T., "NS Simulator for beginners", http://wwwsop.inria.fr/maestro/personnel/Eitan.Altman/ns.html.
|
| |
16
|
Han, S., Dillon, T.S., Chang, E., Tian, B., "Secure web services using two-way authentication and three-party key establishment for resource delivery", Journal of Systems Architecture, Vol. 55, no. 4, 233--242, 2009, Elsevier.
|
| |
17
|
The ns Manual, http://www.isi.edu/nsnam/ns/ns-documentation.htmll
|
| |
18
|
Yang, X., Wetherall, D., and Anderson, T., "A DoS-limiting Network Architecture", ACM SIGCOMM Computer Communication, Volume 35, Issue 4 (October 2005), 2005, Pages: 241--252.
|
|