• DocumentCode
    3005172
  • Title

    IPsec tunnels vs. identity-only obfuscation techniques for moving target networks

  • Author

    Fink, R.A. ; Gunduzhan, E. ; Benjamin, B.P. ; Cansever, Derya ; Gralia, M. ; Dinsmore, P.

  • Author_Institution
    Appl. Phys. Lab., Johns Hopkins Univ., Laurel, MD, USA
  • fYear
    2012
  • fDate
    Oct. 29 2012-Nov. 1 2012
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    There has been recent interest in applying moving target approaches to computer networks. The ability to obfuscate the adversary´s view of an organization´s internal network is thought to confound the adversary´s network reconnaissance steps, causing certain inefficiencies in nation state actors´ attack processes. Novel Moving Target Network (MTN) techniques have been proposed specifically to hide communicating endpoint identities, blinding the adversary´s view of the nodes in the network. To date, however, no published work has evaluated identity-only obfuscation approaches against using IPsec ESP tunnels as a way of hiding endpoint identities. The question is, are there some network configurations where identity-only obfuscation techniques work better than IPsec ESP tunnels? We present arguments that low-overhead MTN identity-only obfuscation approaches may work more efficiently on wireless mobile, tactical, peer-to-peer networks where processing energies and transmission bandwidth are constrained and we also discuss features of metrics for measuring the success of moving target network approaches, helping to guide future research in this area.
  • Keywords
    IP networks; computer networks; IPsec ESP tunnels; MTN techniques; computer networks; identity-only obfuscation techniques; moving target network; moving target networks; network reconnaissance steps; organization internal network; peer-to-peer networks; tactical networks; wireless mobile; Bandwidth; Encryption; IP networks; Logic gates; Payloads;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    MILITARY COMMUNICATIONS CONFERENCE, 2012 - MILCOM 2012
  • Conference_Location
    Orlando, FL
  • ISSN
    2155-7578
  • Print_ISBN
    978-1-4673-1729-0
  • Type

    conf

  • DOI
    10.1109/MILCOM.2012.6415740
  • Filename
    6415740