Method and system for preventing IPv6 (Internet Protocol Version 6) from duplicate address detection attack

A technology of address duplication detection and duplication detection, which is applied in the field of data communication, can solve problems such as malfunctioning and network attacks, and achieve the effect of easy expansion and transplantation
CN102082801AActive Publication Date: 2011-06-01ZTE CORP

Patent Information

Authority / Receiving Office
CN ยท China
Patent Type
Applications(China)
Current Assignee / Owner
ZTE CORP
Publication Date
2011-06-01

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The invention relates to a method for preventing IPv6 (Internet Protocol Version 6) from duplicate address detection attack, which comprises the following steps: node equipment sends a neighbor solicitation (NS) message of duplicate address detection, appoints the source address of a received neighbor advertisement (NA) / NS message as the target address of the message after receiving the NA / NS message responding to duplicate address detection, sends an NS unicast reachability probe message and judges whether the response message is received; and if so, the node equipment ensures the configured IPv6 address to be in the duplicate state, otherwise, the node equipment ensures the configured IPv6 address to be in the available state. The invention also provides a system for preventing IPv6 from duplicate address detection attack. By applying the method and the system, the duplicate detection attack can be coped with and the network equipment can be protected.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention relates to the field of data communication, in particular to a method and system for preventing repeated detection attacks of IPv6 addresses. Background technique

[0002] With the depletion of IPv4 addresses, the deployment of a large number of IPv6 networks is gradually put on the agenda, and its security issues are also gradually raised. Although it is generally believed that IPv6 is more secure than IPv4 because of IPsec, in actual deployment, due to insufficient technical capabilities or insufficient security infrastructure, IPv6 networks often do not take any security measures. Moreover, the basic mechanism of IPv6 network transmission is the same as that of IPv4, so IPv6 network is not more secure than IPv4 network.

[0003] The security of IPv6 networks is generally divided into four categories: loopholes and deficiencies in implementation and deployment, non-IP layer attacks, security vulnerabilities during the transition period...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More