Simplified IPSec Protocol Stack for Micro Server
نویسندگان
چکیده
In this paper, we propose a simple IPSec protocol stack for Micro Server. We proposed an implementation of IPSec protocol stack which is constructed by Encapsulating Security Payload (ESP) protocol with Advanced Encryption Security (AES) encryption scheme, whereas authentication using MD5 algorithm is optional. Researchers have focused on creating a small system composed of sensors and a Micro Server where it has a small sized memory, multi-function, low cost, but without security consideration. The security problem in the Micro Server is a challenging task because of the very limited flash memory.Here, we have implemented the AES function as 2.704 Kbytes and the ESP protocol with this encryption function as 3.822Kbytes of code. Therefore, the proposed method has less than 4Kbytes in code size. Even including the authentication using MD5, the file size is less than 7Kbytes although this is still optional. In our proposed method, we have focused on implementing the encapsulation of the payload and ignored the key exchange procedure to simplify the secure communication compared to conventional IPSec protocol stack.
منابع مشابه
Diameter IKEv 2 SK : Using Shared Keys to Support Interaction between
The Internet Key Exchange Protocol version 2 (IKEv2) is a component of the IPsec architecture and is used to perform mutual authentication as well as to establish and to maintain IPsec Security Associations (SAs) between the respective parties. IKEv2 supports several different authentication mechanisms, such as the Extensible Authentication Protocol (EAP), certificates, and Shared Key (SK). Dia...
متن کاملRFC 6618 TLS - Based MIPv
Mobile IPv6 signaling between a Mobile Node (MN) and its Home Agent (HA) is secured using IPsec. The security association (SA) between an MN and the HA is established using Internet Key Exchange Protocol (IKE) version 1 or 2. The security model specified for Mobile IPv6, which relies on IKE/IPsec, requires interaction between the Mobile IPv6 protocol component and the IKE/IPsec module of the IP...
متن کاملFuture Core Networks System (fcns) – a Secure Signalling Protocol Stack for the Umts Core Network
In this paper we present the security features of a novel protocol stack designed for carrying signalling information in the UMTS Core Network (CN) and more specifically for its Packet Switched domain. We compare its features with proposed protocols by the Internet and Telecommunications Community, such as the IPsec and Stream Control Transmission Protocol (SCTP) architectures, moving on to ana...
متن کاملProtocol Support for High Availability of IKEv2/IPsec
The IPsec protocol suite is widely used for business-critical network traffic. In order to make IPsec deployments highly available, more scalable, and failure-resistant, they are often implemented as IPsec High Availability (HA) clusters. However, there are many issues in IPsec HA clustering, and in particular in Internet Key Exchange Protocol version 2 (IKEv2) clustering. An earlier document, ...
متن کاملTask Force ( IETF )
Mobile IPv6 signaling between a Mobile Node (MN) and its Home Agent (HA) is secured using IPsec. The security association (SA) between an MN and the HA is established using Internet Key Exchange Protocol (IKE) version 1 or 2. The security model specified for Mobile IPv6, which relies on IKE/IPsec, requires interaction between the Mobile IPv6 protocol component and the IKE/IPsec module of the IP...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
- I. J. Network Security
دوره 11 شماره
صفحات -
تاریخ انتشار 2010