• DocumentCode
    2787348
  • Title

    Defeating NIDS evasion in Mobile IPv6 networks

  • Author

    Colajanni, Michele ; Zotto, Luca Dal ; Marchetti, Mirco ; Messori, Michele

  • Author_Institution
    Dept. of Inf. Eng., Univ. of Modena & Reggio Emilia, Modena, Italy
  • fYear
    2011
  • fDate
    20-24 June 2011
  • Firstpage
    1
  • Lastpage
    9
  • Abstract
    The diffusion of mobile devices and technologies supporting transparent network mobility can have detrimental effects on network security. We describe how an attacker can lever-age mobility in IPv6 networks to perpetrate known attacks while evading detection by state-of-the-art Network Intrusion Detection Systems (NIDSs). We then propose a new defense strategy based on the exchange of state information among distributed NIDSs. We demonstrate the effectiveness of the proposed solution through a prototype implementation, evaluated experimentally in a Mobile IPv6 network.
  • Keywords
    IP networks; mobile computing; mobile handsets; NIDS; mobile IPv6 networks; mobile devices; network intrusion detection systems; Home automation; Mobile communication; Mobile computing; Monitoring; Optimization; Payloads; Protocols; Mobile IPv6; NIDS state migration; mobility-based NIDS evasion; network intrusion detection;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    World of Wireless, Mobile and Multimedia Networks (WoWMoM), 2011 IEEE International Symposium on a
  • Conference_Location
    Lucca
  • Print_ISBN
    978-1-4577-0352-2
  • Electronic_ISBN
    978-1-4577-0350-8
  • Type

    conf

  • DOI
    10.1109/WoWMoM.2011.5986488
  • Filename
    5986488