The Design and Implementation of Secure Socket SCTP

被引:0
|
作者
Lindskog, Stefan [1 ]
Brunstrom, Anna [2 ]
机构
[1] Norwegian Univ Sci & Technol, Ctr Quantifiable Qual, Serv Commun Syst, N-7034 Trondheim, Norway
[2] Karlstad Univ, Dept Comp Sci, karlstad, Sweden
来源
关键词
SCTP; end-to-end security; protocol design; implementation; packet protection; security differentiation; message complexity; TRANSPORT;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper describes the design and implementation of secure socket SCTP ((SSCTP)-S-2). (SSCTP)-S-2 is a new multi-layer, end-to-end security solution for SCTP. It uses the AUTH protocol extension of SCTP for integrity protection of both control and user messages; TLS is the proposed solution for authentication and key agreement; Data confidentiality is provided through encryption and decryption at the socket library layer. (SSCTP)-S-2 is designed to offer as much security differentiation support as possible using standardized solutions and mechanisms. En the paper, (SSCTP)-S-2 is also compared to SCTP over IPsec and TLS over SCTP in terms of packet protection, security differentiation, and message complexity. The following main conclusions can be draw from the comparison. (SSCTP)-S-2 compares favorably in terms of offered security differentiation and message overhead. Confidentiality protection of SCTP control information is, however, only offered by SCTP over IPsec.
引用
收藏
页码:180 / +
页数:4
相关论文
共 50 条
  • [1] The design and message complexity of secure socket SCTP
    Lindskog, Stefan
    Brunstrom, Anna
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2008, PT 2, PROCEEDINGS, 2008, 5073 : 484 - +
  • [2] Secure SCTP – A Versatile Secure Transport Protocol
    Esbold Unurkhaan
    Erwin P. Rathgeb
    Andreas Jungmaier
    Telecommunication Systems, 2004, 27 : 273 - 296
  • [3] Performance Evaluation of SCTP-Sec: A Secure SCTP mechanism
    Choudhari, Rahul
    Arya, K. V.
    Tiwari, Mukesh
    Choudhary, Kumar Sidharth
    ICCIT: 2009 FOURTH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND CONVERGENCE INFORMATION TECHNOLOGY, VOLS 1 AND 2, 2009, : 1111 - 1116
  • [4] Secure SCTP - A versatile secure transport protocol
    Unurkhaan, E
    Rathgeb, EP
    Jungmaier, A
    TELECOMMUNICATION SYSTEMS, 2004, 27 (2-4) : 273 - 296
  • [5] Design and Implementation of a Socket with Low Standby Power
    Tsai, Cheng-Hung
    Bai, Ying-Wen
    Wang, Hao-Yuan
    Lin, Ming-Bo
    ISCE: 2009 IEEE 13TH INTERNATIONAL SYMPOSIUM ON CONSUMER ELECTRONICS, VOLS 1 AND 2, 2009, : 141 - +
  • [6] A design and implementation of active network socket programming
    Law, KLE
    Leung, R
    ELEVENTH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS, PROCEEDINGS, 2002, : 78 - 83
  • [7] A design and implementation of active network socket programming
    Law, KLE
    Leung, R
    MICROPROCESSORS AND MICROSYSTEMS, 2003, 27 (5-6) : 277 - 284
  • [8] Design and Implementation of a Socket with Low Standby Power
    Tsai, Cheng-Hung
    Bai, Ying-Wen
    Wang, Hao-Yuan
    Lin, Ming-Bo
    IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2009, 55 (03) : 1558 - 1565
  • [9] DESIGN AND IMPLEMENTATION OF SECURE XENIX
    GLIGOR, VD
    CHANDERSEKARAN, CS
    CHAPMAN, RS
    DOTTERER, LJ
    HECHT, MS
    JIANG, WD
    JOHRI, A
    LUCKENBAUGH, GL
    VASUDEVAN, N
    IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 1987, 13 (02) : 208 - 221
  • [10] Software implementation of a Secure Socket Layer (SSL) accelerator based on kernel thread
    Nahm, E
    Min, BJ
    Park, J
    Kim, H
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2004, E87D (01) : 244 - 245