DocumentCode
1457119
Title
Tunnel gateway satisfying mobility and security requirements of mobile and IP-based networks
Author
Jung, Younchan ; Peradilla, Marnel
Author_Institution
Sch. of Inf., Commun. & Electron. Eng., Catholic Univ. of Korea, Puchon, South Korea
Volume
13
Issue
6
fYear
2011
Firstpage
583
Lastpage
590
Abstract
Full-mesh IPSec tunnels pass through a black ("un secure") network (B-NET) to any red ("secure") networks (R NETs). These are needed in military environments, because they enable dynamically changing R-NETs to be reached from a B NET. A dynamically reconfiguring security policy database (SPD) is very difficult to manage, since the R-NETs are mobile. This paper proposes advertisement process technologies in association with the tunnel gateway\´s protocol that sends \´hello\´ and \´prefix advertisement (ADV)\´ packets periodically to a multicast IP address to solve mobility and security issues. We focus on the tunnel gate way\´s security policy (SP) adaptation protocol that enables R-NETs to adapt to mobile environments and allows them to renew services rapidly soon after their redeployment. The prefix ADV process enables tunnel gateways to gather information associated with the dynamic changes of prefixes and the tunnel gateway\´s status (that is, \´down\´/restart). Finally, we observe two different types of performance results. First, we explore the effects of different levels of R-NET movements on SP adaptation latency. Next, we derive the other SP adaptation latency. This can suffer from dynamic deployments of tunnel gateways, during which the protocol data traffic associated with the prefix ADV protocol data unit is expected to be severe, especially when a certain tunnel gateway restarts.
Keywords
IP networks; computer network security; internetworking; mobility management (mobile radio); protocols; tunnels; IP-based networks; advertisement process technology; black unsecure network; dynamically reconfiguring security policy database; full-mesh IPSec tunnels; hello and prefix advertisement packets; military environments; mobile network; multicast IP address; prefix ADV protocol data unit; protocol data traffic; red secure networks; tunnel gateway security policy adaptation protocol; IP networks; Logic gates; Mobile communication; Routing; Routing protocols; Security; Adaption latency; IPSec tunnels; mobile internet protocol (IP); prefix advertisement; security policy; tunnel gateway;
fLanguage
English
Journal_Title
Communications and Networks, Journal of
Publisher
ieee
ISSN
1229-2370
Type
jour
DOI
10.1109/JCN.2011.6157474
Filename
6157474
Link To Document