scispace - formally typeset
Open Access

IPv6 Neighbor Discovery (ND) Trust Models and Threats

James Kempf, +2 more
- Vol. 3756, pp 1-23
Reads0
Chats0
TLDR
The purpose of this discussion is to define the requirements for Securing IPv6 Neighbor Discovery and discusses the threats pertinent to IPv6Neighbor Discovery.
Abstract
The existing IETF standards specify that IPv6 Neighbor Discovery (ND) and Address Autoconfiguration mechanisms may be protected with IPsec Authentication Header (AH). However, the current specifications limit the security solutions to manual keying due to practical problems faced with automatic key management. This document specifies three different trust models and discusses the threats pertinent to IPv6 Neighbor Discovery. The purpose of this discussion is to define the requirements for Securing IPv6 Neighbor Discovery.

read more

Citations
More filters

Transmission of IPv6 Packets over IEEE 802.15.4 Networks

TL;DR: This document describes the frame format for transmission of IPv6 packets and the method of forming IPv6 link-local addresses and statelessly autoconfigured addresses on IEEE 802.15.4 networks.
Patent

Agile network protocol for secure communications using secure domain names

TL;DR: A secure domain name service for a computer network is disclosed that includes a portal connected to the Internet, and a domain name database that stores secure computer network addresses for the computer network as discussed by the authors.
Patent

Method for establishing secure communication link between computers of virtual private network

TL;DR: In this article, a technique for establishing a secure communication link between a first computer and a second computer over a computer network has been described, where one or more data values that vary according to a pseudo-random sequence are inserted into each data packet.

Neighbor Discovery Optimization for IPv6 over Low-Power Wireless Personal Area Networks (6LoWPANs)

TL;DR: This document describes simple optimizations to IPv6 Neighbor Discovery, its addressing mechanisms, and duplicate address detection for Low- power Wireless Personal Area Networks and similar networks.
References
More filters

Neighbor Discovery for IP Version 6 (IPv6)

TL;DR: This document specifies the Neighbor Discovery protocol for IP Version 6.

IPv6 Stateless Address Autoconfiguration

S. Thomson, +1 more
TL;DR: This document specifies the steps a host takes in deciding how to autoconfigure its interfaces in IP version 6.0, including creating a link-local address and verifying its uniqueness on a link, and determining what information should be autoconfigured.

IP Authentication Header

S. Kent, +1 more
TL;DR: This document describes an updated version of the IP Authentication Header (AH), which is designed to provide authentication services in IPv4 and IPv6, and obsoletes RFC 2402 (November 1998).

Secure Domain Name System (DNS) Dynamic Update

B. Wellington
TL;DR: The authentication of the dynamic update message is separate from later DNSSEC validation of the data, and secure communication based on authenticated requests and transactions is used to provide authorization.