REAL

Lightweight 4over6 Test-bed for Security Analysis

Al-Azzawi, Ameen and Lencse, Gábor (2023) Lightweight 4over6 Test-bed for Security Analysis. INFOCOMMUNICATIONS JOURNAL, 15 (3). pp. 30-41. ISSN 2061-2079

[img]
Preview
Text
InfocomJournal_2023_3_4.pdf

Download (1MB) | Preview

Abstract

In this paper, we focus on one of the most prominent IPv6 transition technologies, namely lw4o6 (Lightweight 4over6). We emphasize the uniqueness of lw4o6 and the difference between lw4o6 and the conventional DS-Lite (Dual-Stack Lite), their topology, functionality and security vulnerabilities. We analyze the potential vulnerabilities of lw4o6 infrastructure by applying the STRIDE threat modelling technique, which stands for Spoof- ing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege. Moreover, we build a test-bed for lw4o6 using Snabb, which is an open source software. We test Snabb’s tunneling and binding capabilities and most importantly, port allocation per subscriber. At the end, we present multiple attacking scenarios (Denial of Service, Information Disclosure, Spoofing, etc.) against lw4o6’s main routers and come up with mitigation methods for such attacks.

Item Type: Article
Subjects: Q Science / természettudomány > QA Mathematics / matematika > QA76.16-QA76.165 Communication networks, media, information society / kommunikációs hálózatok, média, információs társadalom
SWORD Depositor: MTMT SWORD
Depositing User: MTMT SWORD
Date Deposited: 31 Jan 2024 15:10
Last Modified: 31 Jan 2024 15:10
URI: http://real.mtak.hu/id/eprint/186866

Actions (login required)

Edit Item Edit Item