The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol

碩士 === 聖約翰科技大學 === 電腦與通訊工程系碩士班 === 102 === Internet Protocol version 6 (IPv6) provides large address space, quality of service, routing and network auto-configuration, etc. In IPv6 networks, nodes use the Neighbor Discovery (ND) protocol to discover neighbor nodes on the link, to determine link-laye...

Full description

Bibliographic Details
Main Authors: Chia-Hung Xiao, 蕭家弘
Other Authors: Chien-Chung Chen
Format: Others
Language:zh-TW
Published: 2015
Online Access:http://ndltd.ncl.edu.tw/handle/03552182658337001766
id ndltd-TW-102SJSM0650003
record_format oai_dc
spelling ndltd-TW-102SJSM06500032016-05-22T04:34:04Z http://ndltd.ncl.edu.tw/handle/03552182658337001766 The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol ICMPv6相鄰節點發現協定漏洞與防範 Chia-Hung Xiao 蕭家弘 碩士 聖約翰科技大學 電腦與通訊工程系碩士班 102 Internet Protocol version 6 (IPv6) provides large address space, quality of service, routing and network auto-configuration, etc. In IPv6 networks, nodes use the Neighbor Discovery (ND) protocol to discover neighbor nodes on the link, to determine link-layer addresses of nodes, to find routers, and to maintain node reachable information also to detect duplicate address. Therefore, ND protocol in IPv6 gains a whole new importance along with a new set of security concerns. DoS and Man-In-Middle attack are caused by malicious nodes due to the vulnerability of ND protocol because in NDP the integrity and validity of received ND Packets are not verified. Fake ND packets can attack the victim by modify the neighbor cache and router-related parameters. In this thesis we propose one detection and protection mechanism for NDP attack, the NDPDefender, which can ensure the validity and integrity of neighbor cache and router information for nodes on the local link without modifing the ND protocol or network topology. Chien-Chung Chen 陳建忠 2015 學位論文 ; thesis 47 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 聖約翰科技大學 === 電腦與通訊工程系碩士班 === 102 === Internet Protocol version 6 (IPv6) provides large address space, quality of service, routing and network auto-configuration, etc. In IPv6 networks, nodes use the Neighbor Discovery (ND) protocol to discover neighbor nodes on the link, to determine link-layer addresses of nodes, to find routers, and to maintain node reachable information also to detect duplicate address. Therefore, ND protocol in IPv6 gains a whole new importance along with a new set of security concerns. DoS and Man-In-Middle attack are caused by malicious nodes due to the vulnerability of ND protocol because in NDP the integrity and validity of received ND Packets are not verified. Fake ND packets can attack the victim by modify the neighbor cache and router-related parameters. In this thesis we propose one detection and protection mechanism for NDP attack, the NDPDefender, which can ensure the validity and integrity of neighbor cache and router information for nodes on the local link without modifing the ND protocol or network topology.
author2 Chien-Chung Chen
author_facet Chien-Chung Chen
Chia-Hung Xiao
蕭家弘
author Chia-Hung Xiao
蕭家弘
spellingShingle Chia-Hung Xiao
蕭家弘
The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
author_sort Chia-Hung Xiao
title The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
title_short The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
title_full The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
title_fullStr The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
title_full_unstemmed The Study of Vulnerability and Protection of ICMPv6 Neighbor Discovery Protocol
title_sort study of vulnerability and protection of icmpv6 neighbor discovery protocol
publishDate 2015
url http://ndltd.ncl.edu.tw/handle/03552182658337001766
work_keys_str_mv AT chiahungxiao thestudyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol
AT xiāojiāhóng thestudyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol
AT chiahungxiao icmpv6xiānglínjiédiǎnfāxiànxiédìnglòudòngyǔfángfàn
AT xiāojiāhóng icmpv6xiānglínjiédiǎnfāxiànxiédìnglòudòngyǔfángfàn
AT chiahungxiao studyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol
AT xiāojiāhóng studyofvulnerabilityandprotectionoficmpv6neighbordiscoveryprotocol
_version_ 1718275248309141504