A self-confirming engine for preventing man-in-the-middle attack

被引:0
作者
Kanamori, M [1 ]
Kobayashi, T
Yamaguchi, S
机构
[1] Nara Inst Sci & Technol, Ikoma 6300192, Japan
[2] Kansai Univ, Fac Informat, Takatsuki, Osaka 5691095, Japan
关键词
ARP; ND; address resolution; MITM attack;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
In this paper, we focus on how to correct address mapping violation, in which an attacker rewrites the address mapping table of a victim to perform a Man-in-the-Middle (MITM) attack. We propose a technique for preventing MITM attacks in which a malicious user intercepts and possibly alters the data transmitted between two hosts. MITM attack is hard for legitimate users to notice during their normal communication, because each user believes they are communicating directly. Address mapping violation can occur because of vulnerability of address resolution protocols, Address Resolution Protocol (ARP) in IPv4 and Neighbor Discovery (ND) protocol in IPv6. Accordingly, a good method to prevent MITM attack by address mapping violation is essential for both current and future communications, i.e. wireless networks with roaming users and an interconnected world. Hence, our proposal mainly aims to have high usability in future applications such as embedded devices.
引用
收藏
页码:530 / 538
页数:9
相关论文
共 19 条
[1]  
[Anonymous], IPV6 STATELESS ADDRE
[2]  
[Anonymous], 1982, IETF INTERNET STANDA
[3]  
ARKKO J, 2003, SECURE NEIGHBOR DISC
[4]  
ARKKO J, 2003, MANUAL CONFIGURATION
[5]  
Aura Tuomas, 2003, CRYPTOGRAPHICALLY GE
[6]  
BACE RG, 1999, MACMILLAN TECHNOLOGY
[7]  
BUIS P, 1996, NAMES ADDRESSES
[8]  
Harkins D., 1998, The internet key exchange (IKE)
[9]  
KENT S, 1998, SECURITY ARCHITECTUR
[10]  
Kent Stephen, 1998, IP AUTHENTICATION HE