Al-Azzawi, Ameen and Lencse, Gábor (2023) Lightweight 4over6 Test-bed for Security Analysis. INFOCOMMUNICATIONS JOURNAL, 15 (3). pp. 30-41. ISSN 2061-2079
|
Text
InfocomJournal_2023_3_4.pdf Download (1MB) | Preview |
Abstract
In this paper, we focus on one of the most prominent IPv6 transition technologies, namely lw4o6 (Lightweight 4over6). We emphasize the uniqueness of lw4o6 and the difference between lw4o6 and the conventional DS-Lite (Dual-Stack Lite), their topology, functionality and security vulnerabilities. We analyze the potential vulnerabilities of lw4o6 infrastructure by applying the STRIDE threat modelling technique, which stands for Spoof- ing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege. Moreover, we build a test-bed for lw4o6 using Snabb, which is an open source software. We test Snabb’s tunneling and binding capabilities and most importantly, port allocation per subscriber. At the end, we present multiple attacking scenarios (Denial of Service, Information Disclosure, Spoofing, etc.) against lw4o6’s main routers and come up with mitigation methods for such attacks.
Item Type: | Article |
---|---|
Subjects: | Q Science / természettudomány > QA Mathematics / matematika > QA76.16-QA76.165 Communication networks, media, information society / kommunikációs hálózatok, média, információs társadalom |
SWORD Depositor: | MTMT SWORD |
Depositing User: | MTMT SWORD |
Date Deposited: | 31 Jan 2024 15:10 |
Last Modified: | 31 Jan 2024 15:10 |
URI: | http://real.mtak.hu/id/eprint/186866 |
Actions (login required)
Edit Item |