Skip to main content

Propose a New Approach for Securing DHCPv6 Server in IPv6 Link-Local Network

  • Conference paper
  • First Online:
Intelligent and Interactive Computing

Part of the book series: Lecture Notes in Networks and Systems ((LNNS,volume 67))

Abstract

IPv6 is becoming more and more entrenched, especially as the shortage of IPv4 address became obvious recently. Internet Protocol version 6 (IPv6) uses Dynamic Host Configuration Protocol for IPv6 (DHCPv6) for assigning the IPv6 address to hosts and provides the host with network configuration parameters. The DHCPv6 protocol may use to reveal host information and inject fake information into a host. Thus, the authentication and privacy of the DHCPv6 messages are a vital security component in the IPv6 network. This paper proposes a new security approach to provide privacy and security for the DHCPv6 message. The proposed approach utilized a hybrid cryptosystem and Message Authentication Code (MAC) algorithm to provide privacy and authentication. The paper also presents the expected results for the proposed approach and the future works.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 129.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 169.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Groat S, Dunlop M, Urbanksi W et al (2012) Using an IPv6 moving target defense to protect the Smart Grid. In: Innovative smart grid technologies (ISGT), 2012 IEEE PES. IEEE, pp 1–7

    Google Scholar 

  2. Al-Ani AK, Anbar M, Manickam S et al (2017) Proposed DAD-match security technique based on hash function to secure duplicate address detection in IPv6 Link-local Network. In: Proceedings of the 2017 international conference on information technology. ACM, pp 175–179

    Google Scholar 

  3. Al-Ani AK, Anbar M, Manickam S et al (2017) Proposed DAD-match mechanism for securing duplicate address detection process in IPv6 link-local network based on symmetric-key algorithm. In: International conference on computational science and technology. Springer, pp 108–118

    Google Scholar 

  4. Google IPv6 (2018) IPv6 – Google

    Google Scholar 

  5. Elejla OE, Anbar M, Belaton B (2016) Icmpv6-based dos and ddos attacks and defense mechanisms: review. IETE Tech Rev 1–18

    Google Scholar 

  6. Ruiz JMV, Cardenas CS, Tapia JLM (2017) Implementation and testing of IPv6 transition mechanisms. In: 2017 IEEE 9th Latin-American conference on communications (LATINCOM), IEEE, pp 1–6

    Google Scholar 

  7. Yousheng G, Lingyun Y, Lijing H (2017) Addressing scheme based on three-dimensional space over 6LoWPAN for internet of things. In: 2017 13th IEEE international conference on electronic measurement & instruments (ICEMI), IEEE, pp 59–64

    Google Scholar 

  8. Tirkkonen L (2016) Utilising configuration management node data for network infrastructure management

    Google Scholar 

  9. Tripathi N, Hubballi N (2017) Detecting stealth DHCP starvation attack using machine learning approach. J Comput Virol Hacking Tech 1–12

    Google Scholar 

  10. Wei D, Kerr J, Huth T, Mihajlovski V (2018) Dynamic Host Configuration Protocol for IPv6 (DHCPv6). https://www.iana.org/assignments/dhcpv6-parameters/dhcpv6-parameters.xhtml. Accessed 18 Jun 2018

  11. Brzozowski J, Van de Velde G (2017) Unique IPv6 Prefix per Host

    Google Scholar 

  12. Horley E (2014) IPv6 and DHCP. In: Practical IPv6 for Windows Administrators. Springer, pp 191–207

    Google Scholar 

  13. Kaltio J (2016) IPv6 in soho environment: a study of basic functionality

    Google Scholar 

  14. Kharche MPS, Jawandhiya PM (2016) A case study of IPv4 and IPv6. In: National conference “CONVERGENCE. p 6

    Google Scholar 

  15. Droms R, Bound J, Lemon T et al (2003) Dynamic host configuration protocol for IPv6 (DHCPv6) (RFC 3315)

    Google Scholar 

  16. Shen S, Lee X, Sun Z et al Enhance IPv6 dynamic host configuration with cryptographically generated addresses. ieeexplore.ieee.org

    Google Scholar 

  17. Gont F, Liu W, Van de Velde G (2015) DHCPv6-Shield: protecting against rogue DHCPv6 servers

    Google Scholar 

  18. Li L, Ren G, Liu Y, Wu J (2018) Secure DHCPv6 mechanism for DHCPv6 security and privacy protection. Tsinghua Sci Technol 23:13–21. https://doi.org/10.26599/TST.2018.9010020

    Article  Google Scholar 

  19. Alangar V, Swaminathan A (2013) IPv6 security: issue of anonymity. Int J Eng Comput Sci 2:2486À93

    Google Scholar 

  20. Krishnan S, Mrugalski T, Jiang S (2016) Privacy Considerations for DHCPv6

    Google Scholar 

  21. Droms R, Arbaugh W (2001) Authentication for DHCP messages

    Google Scholar 

  22. Su Z, Ma H, Zhang X et al Secure DHCPv6 that uses RSA authentication integrated with self-certified address. ieeexplore.ieee.org

    Google Scholar 

  23. Su Z, Ma H, Zhang X, Zhang B (2011) Secure DHCPv6 that uses RSA authentication integrated with self-certified address. In: 2011 Third International Workshop on Cyberspace safety and security (CSS), IEEE, pp 39–44

    Google Scholar 

  24. Hinden R (2017) Internet protocol, version 6 (IPv6) specification

    Google Scholar 

  25. Troan O, Droms R (2003) IPv6 prefix options for dynamic host configuration protocol (DHCP) version 6

    Google Scholar 

  26. Bi J, Wu J, Yao G, Baker F (2015) Source address validation improvement (SAVI) solution for DHCP. RFC 7513, https://doi.org/10.17487/rfc7513, May 2015, http://www.rfc-editor. org/info/rfc7513

  27. Jiang S, Shen S (2012) Secure DHCPv6 Using CGAs. Work Prog

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Mohammed Anbar .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2019 Springer Nature Singapore Pte Ltd.

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Al-Ani, A., Anbar, M., Abdullah, R., Al-Ani, A.K., Al-Mashhadi, S. (2019). Propose a New Approach for Securing DHCPv6 Server in IPv6 Link-Local Network. In: Piuri, V., Balas, V., Borah, S., Syed Ahmad, S. (eds) Intelligent and Interactive Computing. Lecture Notes in Networks and Systems, vol 67. Springer, Singapore. https://doi.org/10.1007/978-981-13-6031-2_42

Download citation

Publish with us

Policies and ethics