LTMI Internet Management Technology Laboratory APNOM 2003 A Study on Survivability of Mobile Network Nodes in the Network Mobility Sang Young Lee, Jin Seok Yang, Dong Soo Kim and Tai Myoung Chung Internet Management Technology Lab. Dept. for Electronics and Computer Engineering Sungkyunkwan University Tel. :
LTMI Internet Management Technology Laboratory APNOM Introduction [Source : krNIC, NUA, cert/cc Inc.] Increase network host & user, then increase incidents
LTMI Internet Management Technology Laboratory APNOM Related works NEMO(Network Mobility) A Mobile Network is an entire network, moving as a unit, which changes its point of attachment to the Internet. A NEMO may be composed by one or more IP-subnets IETF NENO WG AR MR AR Internet home link NEMO link visited link egress interface ingress interface single- link NEMO multi-link NEMO CN
LTMI Internet Management Technology Laboratory APNOM Related works CITRA(cooperative intrusion traceback and response architecture) DARPA, NAI, UC Davis Boundary controllers Discovery coordinator Intrusion detection system Intrusion detection system Boundary controllers Boundary controller Propagating traceback message Intrusion or attacks Community Neighborhood 2 Neighborhood 3 Neighborhood 1 Sending traceback message
LTMI Internet Management Technology Laboratory APNOM Related works Survivability The capability of a system to fulfill its mission in a timely manner, even in the presence of stresses Stresses include attacks, failures, accidents, and abnormal loads DARPA Survival by defense Use of redundancy Monitoring QoS(Quality of Service) Self-check Application adaptation BBN Technology
LTMI Internet Management Technology Laboratory APNOM Current Issues NEMO Single point failure in AR, MR Low process capability, Battery and Bandwidth of MNNs QoS & Performance Security Confidentiality Authentication Authorization Location Privacy Access Control : VMN Survival by Defense - Resource Monitoring Guarantee QoS
LTMI Internet Management Technology Laboratory APNOM NCS - Architecture Discovery Coordinator Internet AAA MR AR MR AR AAA Neighborhood 1 Neighborhood 2 AAA HA AR Neighborhood 3 Community Index Mobile Router w/ RMA Mobile Host w/ RMA
LTMI Internet Management Technology Laboratory APNOM NCS - Module & Protocol OS Transport layer Network/DL layer Service APIs Physical layer AR(Access Router) Network/DL layer Transport layer Service APIs Resource Mon.Security Service Module Resource Mon. Security Transport Service Module Resource Mon. Security Transport Service Module Resource Mon. Security Transport Physical layer Security Systems(IDS, FW, etc.)MNNs AAA Discovery Coordinator Application Resource Mon.Security Repository Service APIs Index Wired networking protocol Resource monitoring info. & AAA protocol COPS LDAP Wireless networking protocol RMA
LTMI Internet Management Technology Laboratory APNOM NCS - Procedure Discovery Coordinator Internet AAA MR AR MR AR AAA Neighborhood 1 Neighborhood 2 AAA HA AR Neighborhood 3 Community syn-flood attacks See the symptoms sending alert & traceback msg alert & traceback msg
LTMI Internet Management Technology Laboratory APNOM Conclusions & Future Works Advantages No corruption of service in the AR, MR Guaranteed QoS, Improved Security in the NCS community Access control, Authorization for MNNs Conclusions Survival by defense-enabling in AR, MR Prevent some attacks QoS improvement by resource management Future works Need consideration of Multi-homing in NEMO Minimize performance decrease of MNNs Formalize a method of symptoms detection
LTMI Internet Management Technology Laboratory APNOM