Title :
Security issues in PIM-SM link-local messages
Author :
Islam, Salekul ; Atwood, J. William
Abstract :
In the present Internet draft (ID) of protocol independent multicast-sparse mode (PIM-SM), the IPsec authentication header (AH) protocol without anti-replay mechanism has been proposed to protect the link-local messages. This compromise makes PIM-SM vulnerable to denial of service (DoS) attack. Moreover, in this ID, the security association lookup and the required number of security associations are erroneous. A new proposal is presented to protect PIM link-local messages while activating the anti-replay mechanism. The security association lookup method has also been modified. Finally, this proposal has been formally validated using SPIN.
Keywords :
IP networks; Internet; multicast protocols; telecommunication security; DoS attack; IPsec authentication header; Internet protocol; PIM-SM link-local message security; SPIN; anti-replay mechanism; denial of service attack; protocol independent multicast-sparse mode; security association lookup; Authentication; Computer crime; Computer science; Data security; Databases; Internet; Proposals; Protection; Protocols; Software engineering;
Conference_Titel :
Local Computer Networks, 2004. 29th Annual IEEE International Conference on
Print_ISBN :
0-7695-2260-2
DOI :
10.1109/LCN.2004.110