The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
碩士 === 聖約翰科技大學 === 電腦與通訊工程系碩士班 === 102 === Internet Protocol version 6 (IPv6) provides large address space, quality of service, routing and network auto-configuration, etc. In IPv6 networks, nodes use the Neighbor Discovery (ND) protocol to discover neighbor nodes on the link, to determine link-laye...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2015
|
Online Access: | http://ndltd.ncl.edu.tw/handle/03552182658337001766 |
id |
ndltd-TW-102SJSM0650003 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-102SJSM06500032016-05-22T04:34:04Z http://ndltd.ncl.edu.tw/handle/03552182658337001766 The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol ICMPv6相鄰節點發現協定漏洞與防範 Chia-Hung Xiao 蕭家弘 碩士 聖約翰科技大學 電腦與通訊工程系碩士班 102 Internet Protocol version 6 (IPv6) provides large address space, quality of service, routing and network auto-configuration, etc. In IPv6 networks, nodes use the Neighbor Discovery (ND) protocol to discover neighbor nodes on the link, to determine link-layer addresses of nodes, to find routers, and to maintain node reachable information also to detect duplicate address. Therefore, ND protocol in IPv6 gains a whole new importance along with a new set of security concerns. DoS and Man-In-Middle attack are caused by malicious nodes due to the vulnerability of ND protocol because in NDP the integrity and validity of received ND Packets are not verified. Fake ND packets can attack the victim by modify the neighbor cache and router-related parameters. In this thesis we propose one detection and protection mechanism for NDP attack, the NDPDefender, which can ensure the validity and integrity of neighbor cache and router information for nodes on the local link without modifing the ND protocol or network topology. Chien-Chung Chen 陳建忠 2015 學位論文 ; thesis 47 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 聖約翰科技大學 === 電腦與通訊工程系碩士班 === 102 === Internet Protocol version 6 (IPv6) provides large address space, quality of service, routing and network auto-configuration, etc. In IPv6 networks, nodes use the Neighbor Discovery (ND) protocol to discover neighbor nodes on the link, to determine link-layer addresses of nodes, to find routers, and to maintain node reachable information also to detect duplicate address. Therefore, ND protocol in IPv6 gains a whole new importance along with a new set of security concerns. DoS and Man-In-Middle attack are caused by malicious nodes due to the vulnerability of ND protocol because in NDP the integrity and validity of received ND Packets are not verified. Fake ND packets can attack the victim by modify the neighbor cache and router-related parameters. In this thesis we propose one detection and protection mechanism for NDP attack, the NDPDefender, which can ensure the validity and integrity of neighbor cache and router information for nodes on the local link without modifing the ND protocol or network topology.
|
author2 |
Chien-Chung Chen |
author_facet |
Chien-Chung Chen Chia-Hung Xiao 蕭家弘 |
author |
Chia-Hung Xiao 蕭家弘 |
spellingShingle |
Chia-Hung Xiao 蕭家弘 The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol |
author_sort |
Chia-Hung Xiao |
title |
The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol |
title_short |
The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol |
title_full |
The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol |
title_fullStr |
The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol |
title_full_unstemmed |
The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol |
title_sort |
study of vulnerability and protection of icmpv6 neighbor discovery protocol |
publishDate |
2015 |
url |
http://ndltd.ncl.edu.tw/handle/03552182658337001766 |
work_keys_str_mv |
AT chiahungxiao thestudyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol AT xiāojiāhóng thestudyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol AT chiahungxiao icmpv6xiānglínjiédiǎnfāxiànxiédìnglòudòngyǔfángfàn AT xiāojiāhóng icmpv6xiānglínjiédiǎnfāxiànxiédìnglòudòngyǔfángfàn AT chiahungxiao studyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol AT xiāojiāhóng studyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol |
_version_ |
1718275248309141504 |