Title :
Leap-of-Faith Security is Enough for IP Mobility
Author :
Komu, Miika ; Lindqvist, Janne
Author_Institution :
Helsinki Inst. for Inf. Technol., Univ. of Helsinki, Helsinki
Abstract :
Host mobility presents a challenge for security protocols. For example, many proposals exist for integrating IPsec to mobile IP. However, the existing approaches are cumbersome to configure and contain many round trips for security and mobility updates. The host identity protocol (HIP) is being developed in the IETF to provide secure host mobility and multihoming. The default way to operate the protocol is that the connection initiator knows the peer´s public key or a hash of the public key. This requires either infrastructure support or pre-configuration which introduces difficulties for deploying the protocol. In this paper, we present an implementation and evaluation of HIP that creates leap-of-faith security associations. The implemented approach establishes end-to-end security without requiring any new infrastructure to be deployed. We argue that since worldwide PKI is nowhere near, and seems to nearly impossible to deploy in practice, leap-of-faith security is enough for Internet access and mobility. In our view, the deployment of opportunistic HIP even makes the deployment of DNSSEC unnecessary for most applications.
Keywords :
IP networks; Internet; mobile computing; public key cryptography; Internet access; host identity protocol; host mobility; leap-of-faith security; mobile IP; multihoming; public key; security protocols; Computer security; Cryptographic protocols; Hip; Information security; Internet; Network servers; Proposals; Public key; Public key cryptography; Transport protocols;
Conference_Titel :
Consumer Communications and Networking Conference, 2009. CCNC 2009. 6th IEEE
Conference_Location :
Las Vegas, NV
Print_ISBN :
978-1-4244-2308-8
Electronic_ISBN :
978-1-4244-2309-5
DOI :
10.1109/CCNC.2009.4784729