Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks
This thesis aims to introduce a prevention mechanism called DAD-match that comprises three stages, namely, (i) the tentative IP address generation stage, which aims to hide a tentative IP address by using a (cryptographic hash function), (ii) the secure NS and NA messages stage, which aims to secure...
Saved in:
Main Author: | |
---|---|
Format: | Thesis |
Language: | English |
Published: |
2020
|
Subjects: | |
Online Access: | http://eprints.usm.my/55543/1/Pages%20from%20Ahmed%20K.%20Al-Ani%20Thesis%202019%20-%20VIVA%20UPDATED2%20cut.pdf |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
id |
my-usm-ep.55543 |
---|---|
record_format |
uketd_dc |
spelling |
my-usm-ep.555432022-11-08T01:59:51Z Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks 2020-02 Ibrahim Al-Ani, Ahmed Khallel TK5105 Computer networks and Data transmission systems This thesis aims to introduce a prevention mechanism called DAD-match that comprises three stages, namely, (i) the tentative IP address generation stage, which aims to hide a tentative IP address by using a (cryptographic hash function), (ii) the secure NS and NA messages stage, which aims to secure NS and NA messages by using the NDP experimental option and (iii) the DoS on DAD prevention stage, which aims to prevent a DoS attack during the DAD process by designing a rule-based mechanism. The proposed DAD-match mechanism is evaluated in terms of its processing time, bandwidth consumption and DoS prevention success rate by using different scenarios, and its performance is compared with existing mechanisms, including Standard-DAD, SeND, Trust-ND and HSEC-Target-DAD. The results show that DAD-match reduces the processing time by approximately 95.5%, 28.58% and 84.93% compared with SeND, Trust-ND and HSEC-Target-DAD, respectively. 2020-02 Thesis http://eprints.usm.my/55543/ http://eprints.usm.my/55543/1/Pages%20from%20Ahmed%20K.%20Al-Ani%20Thesis%202019%20-%20VIVA%20UPDATED2%20cut.pdf application/pdf en public phd doctoral Universiti Sains Malaysia Pusat IPv6 Termaju Negara (National Advanced IPv6 Centre of Excellence NAv6) |
institution |
Universiti Sains Malaysia |
collection |
USM Institutional Repository |
language |
English |
topic |
TK5105 Computer networks and Data transmission systems |
spellingShingle |
TK5105 Computer networks and Data transmission systems Ibrahim Al-Ani, Ahmed Khallel Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks |
description |
This thesis aims to introduce a prevention mechanism called DAD-match that comprises three stages, namely, (i) the tentative IP address generation stage, which aims to hide a tentative IP address by using a (cryptographic hash function), (ii) the secure NS and NA messages stage, which aims to secure NS and NA messages by using the NDP experimental option and (iii) the DoS on DAD prevention stage, which aims to prevent a DoS attack during the DAD process by designing a rule-based mechanism. The proposed DAD-match mechanism is evaluated in terms of its processing time, bandwidth consumption and DoS prevention success rate by using different scenarios, and its performance is compared with existing mechanisms, including Standard-DAD, SeND, Trust-ND and HSEC-Target-DAD. The results show that DAD-match reduces the processing time by approximately 95.5%, 28.58% and 84.93% compared with SeND, Trust-ND and HSEC-Target-DAD, respectively. |
format |
Thesis |
qualification_name |
Doctor of Philosophy (PhD.) |
qualification_level |
Doctorate |
author |
Ibrahim Al-Ani, Ahmed Khallel |
author_facet |
Ibrahim Al-Ani, Ahmed Khallel |
author_sort |
Ibrahim Al-Ani, Ahmed Khallel |
title |
Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks |
title_short |
Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks |
title_full |
Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks |
title_fullStr |
Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks |
title_full_unstemmed |
Prevention Mechanism Against Denial Of Service Attack On Duplicate Address Detection Process In Ipv6 Link-Local Networks |
title_sort |
prevention mechanism against denial of service attack on duplicate address detection process in ipv6 link-local networks |
granting_institution |
Universiti Sains Malaysia |
granting_department |
Pusat IPv6 Termaju Negara (National Advanced IPv6 Centre of Excellence NAv6) |
publishDate |
2020 |
url |
http://eprints.usm.my/55543/1/Pages%20from%20Ahmed%20K.%20Al-Ani%20Thesis%202019%20-%20VIVA%20UPDATED2%20cut.pdf |
_version_ |
1776101092116922368 |