Title :
Smart Tunnel Union for NAT Traversal
Author :
Huang, Tzu-Chi ; Shieh, Ce-Kuen ; Lai, Wen-Huang ; Miao, Yu-Ben
Author_Institution :
Dept. of Electr. Eng., Nat. Cheng Kung Univ., Tainan
Abstract :
Network address translator (NAT) is the well-known, transitional method to mitigate the problem of IPv4 address depletion in today´s Internet. However, the assignment, translation, and export of address/port in a NAT at run time affect application functions. Accordingly, application servers behind the NAT cannot accept requests directly from public networks. Sensitive applications cannot hold their end-to-end security mechanisms. Applications lose connections after the NAT reboots or changes the binding address/port. However, current proposals for NAT traversal hardly solve the problems. Against the problems, we propose Smart Tunnel Union for NAT Traversal (STUNT) in the paper. STUNT permits applications behind the NAT to be actively contacted by Internet clients, keeps end-to-end security mechanisms, and avoids the risk of exporting binding information of the NAT to connection endpoints. Meanwhile, it permits applications to traverse the NAT and keeps the NAT intact
Keywords :
IP networks; Internet; client-server systems; naming services; telecommunication security; IPv4 address depletion problem; Internet clients; Smart Tunnel Union for NAT Traversal; application server; end-to-end security mechanism; network address translator; Communication system control; Data security; IP networks; Information security; Internet; Network address translation; Network servers; Proposals; Protocols; Web server;
Conference_Titel :
Network Computing and Applications, Fourth IEEE International Symposium on
Conference_Location :
Cambridge, MA
Print_ISBN :
0-7695-2326-9
DOI :
10.1109/NCA.2005.50