Title :
Packet Filter Algorithm to prevent the security hole of routing header in IPv6
Author :
Lim, Jae-Deok ; Kim, Young-Ho ; Kim, Ki-Young
Author_Institution :
Inf. Security Res. Div., Electron. & Telecommun. Res. Inst., Daejeon
Abstract :
IPv6 protocol is suggested and developed as an alternative of IPv4 protocol. IPv6 protocol has many features for example the expanded addressing capability, auto-configuration mechanism, simplification of the header format, improved support for extensions and options, extensions for authentication and privacy, flow labeling capability and so on. But many security holes of IPv6 are being reported together with the features as mentioned above. This paper suggests the algorithm to solve the security hole caused by a routing header. Routing header is a kind of extension headers of IPv6 and is used by an IPv6 source to list one or more intermediate nodes to be visited on the way to a packet´s destination. But routing header has the security hole that an attacker can detour the access list of security system, for example firewall, and then can access the protected internal system by using routing header
Keywords :
Internet; routing protocols; telecommunication security; transport protocols; IPv6 protocol; flow labeling capability; network security; packet filter algorithm; routing header; Access control; Access protocols; Authentication; Electronic mail; Filtering algorithms; Filters; Information security; Protection; Routing protocols; User interfaces; IPv6 network; IPv6 packet filtering; Network security; Routing header;
Conference_Titel :
SICE-ICASE, 2006. International Joint Conference
Conference_Location :
Busan
Print_ISBN :
89-950038-4-7
Electronic_ISBN :
89-950038-5-5
DOI :
10.1109/SICE.2006.314905