At RFC 3776, IP security protocol (IPsec) has been implemented in mobile IP for securing IP datagram at IP layer. Previous research only considered the traffic between mobile node (MN) and home agent (HA), but the traffic from HA to correspondent node (CN) was not considered. Network Mobility (NEMO) is based on Mobile IPv6 (MIPv6), so it inherits the same problem of only providing protection between mobile router (MR) and MR_HA. This paper aims to improve the security vulnerability by proposing a nested IPsec Encapsulating Security Payload (ESP) scheme capable of establishing nested IPsec ESP from MN to CN. The proposed scheme obviously enhances security with confidentiality and integrity in NEMO.
Published in:
Parallel Processing Workshops (ICPPW), 2011 40th International Conference on
Date of Conference: 13-16 Sept. 2011