Design and Implementation of Security for HIMALIS Architecture of Future Networks

被引:5
|
作者
Kafle, Ved P. [1 ]
Li, Ruidong [1 ]
Inoue, Daisuke [1 ]
Harai, Hiroaki [1 ]
机构
[1] Natl Inst Informat & Commun Technol NICT, Koganei, Tokyo 1848795, Japan
来源
关键词
ID/locator split architecture; security; new generation network; future network;
D O I
10.1587/transinf.E96.D.226
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
For flexibility in supporting mobility and multihoming in edge networks and scalability of the backbone routing system, future Internet is expected to be based on the concept of ID/locator split. Heterogeneity Inclusion and Mobility Adaptation through Locator ID Separation (HIMALIS) has been designed as a generic future network architecture based on ID/locator split concept. It can natively support mobility, multihoming, scalable backbone routing and heterogeneous protocols in the network layer of the new generation network or future Internet. However, HIMALIS still lacks security functions to protect itself from various attacks during the procedures of storing, updating, and retrieving of ID/locator mappings, such as impersonation attacks. Therefore, in this paper, we address the issues of security functions design and implementation for the HIMALIS architecture. We present an integrated security scheme consisting of mapping registration and retrieval security, network access security, communication session security, and mobility security. Through the proposed scheme, the hostname to ID and locator mapping records can be securely stored and updated in two types of name registries, domain name registry and host name registry. Meanwhile, the mapping records retrieved securely from these registries are utilized for securing the network access process, communication sessions, and mobility management functions. The proposed scheme provides comprehensive protection of both control and data packets as well as the network infrastructure through an effective combination of asymmetric and symmetric cryptographic functions.
引用
收藏
页码:226 / 237
页数:12
相关论文
共 50 条
  • [1] Network Mobility Management in HIMALIS Architecture of Future Networks
    Kafle, Ved P.
    Li, Ruidong
    Tazaki, Hajime
    Harai, Hiroaki
    [J]. 2012 IEEE GLOBECOM WORKSHOPS (GC WKSHPS), 2012, : 998 - 1003
  • [2] On the Design and Implementation of a Security Architecture for Software Defined Networks
    Karmakar, Kallol Krishna
    Varadharajan, Vijay
    Tupakula, Udaya
    [J]. PROCEEDINGS OF 2016 IEEE 18TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS; IEEE 14TH INTERNATIONAL CONFERENCE ON SMART CITY; IEEE 2ND INTERNATIONAL CONFERENCE ON DATA SCIENCE AND SYSTEMS (HPCC/SMARTCITY/DSS), 2016, : 671 - 678
  • [3] Research and experimentation with the HIMALIS network architecture for future internet
    Martinez-Julia, Pedro
    Skarmeta, Antonio F.
    Kafle, Ved P.
    [J]. 2012 Future Network and Mobile Summit, FutureNetw 2012, 2012,
  • [4] Design and implementation of MobiSEC: A complete security architecture for wireless mesh networks
    Martignon, Fabio
    Paris, Stefano
    Capone, Antonio
    [J]. COMPUTER NETWORKS, 2009, 53 (12) : 2192 - 2207
  • [5] On the Design and Implementation of a Security Architecture for End to End Services in Software Defined Networks
    Karmakar, Kallol Krishna
    Varadharajan, Vijay
    Tupakula, Udaya
    [J]. 2016 IEEE 41ST CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN), 2016, : 519 - 522
  • [6] Future active Ip networks security architecture
    Gabrijelcic, D
    Blazic, BJ
    Tasic, J
    [J]. COMPUTER COMMUNICATIONS, 2005, 28 (06) : 688 - 701
  • [7] A security architecture for future active IP networks
    Savanovic, A
    Karnouskos, S
    Gabrijelcic, D
    Mocilar, F
    [J]. ECUMN'2002: 2ND EUROPEAN CONFERENCE ON UNIVERSAL MULTISERVICE NETWORKS, CONFERENCE PROCEEDINGS, 2002, : 131 - 140
  • [8] A Security Enhanced Network Architecture for Future Networks
    Ren, Jing
    Wang, Sheng
    Zhao, Yangming
    Xu, Shizhong
    Li, Lemin
    [J]. PROCEEDINGS OF 2011 INTERNATIONAL CONFERENCE ON ADVANCED INTELLIGENCE AND AWARENESS INTERNET, IET AIAI2011, 2011, : 199 - 202
  • [9] Mobility Management in HIMALIS Architecture
    Kafle, Ved P.
    Inoue, Masugi
    [J]. 2010 7TH IEEE CONSUMER COMMUNICATIONS AND NETWORKING CONFERENCE-CCNC 2010, 2010, : 946 - 950
  • [10] Towards security architecture for future active IP networks
    Gabrijelcic, D
    Savanovic, A
    Blazic, BJ
    [J]. ADVANCED COMMUNICATIONS AND MULTIMEDIA SECURITY, 2002, 100 : 183 - 195