IPv6 address obfuscation by intermediate middlebox in coordination with connected devices

Publikation: Beitrag in Buch/Konferenzbericht/Sammelband/GutachtenBeitrag in KonferenzbandBeigetragenBegutachtung

Beitragende

  • Florent Fourcot - , Télécom Bretagne, Technische Universität Dresden (Autor:in)
  • Laurent Toutain - , Télécom Bretagne (Autor:in)
  • Stefan Köpsell - , Professur für Datenschutz und Datensicherheit (DD) (Autor:in)
  • Frédéric Cuppens - , Télécom Bretagne (Autor:in)
  • Nora Cuppens-Boulahia - , Télécom Bretagne (Autor:in)

Abstract

Privacy is a major concern on the current Internet, but transport mechanisms like IPv4 and more specifically IPv6 do not offer the necessary protection to users. However, the IPv6 address size allows designing privacy mechanisms impossible in IPv4. Nevertheless existing solutions like Privacy Extensions [20] are not optimal, still only one address is in use for several communications over time. And it does not offer control of the network by the administrator (end devices use randomly generated addresses). Our IPv6 privacy proposal uses ephemeral addresses outside the trusted network but stable addresses inside the local network, allowing the control of the local network security by the administrator. Our solution is based on new opportunities of IPv6: a large address space and a new flow label field. In combination with Cryptographically Generated Addresses, we can provide protection against spoofing on the local network and enhanced privacy for Internet communication.

Details

OriginalspracheEnglisch
TitelAdvances in Communication Networking
Herausgeber (Verlag)Springer, Berlin [u. a.]
Seiten148-160
Seitenumfang13
ISBN (Print)9783642405518
PublikationsstatusVeröffentlicht - 2013
Peer-Review-StatusJa

Publikationsreihe

ReiheLecture Notes in Computer Science, Volume 8115
ISSN0302-9743

Konferenz

Titel19th EUNICE/IFIP WG 6.6 International Workshop on Advances in Communication Networking, EUNICE 2013
Dauer28 - 30 August 2013
StadtChemnitz
LandDeutschland

Externe IDs

ORCID /0000-0002-0466-562X/work/142246155

Schlagworte

Schlagwörter

  • Address Management, IPv6, Privacy, Security

Bibliotheksschlagworte