Visible to the public Integration of Firewall and IDS on Securing Mobile IPv6

TitleIntegration of Firewall and IDS on Securing Mobile IPv6
Publication TypeConference Paper
Year of Publication2020
AuthorsPraptodiyono, Supriyanto, Jauhari, Moh., Fahrizal, Rian, Hasbullah, Iznan H., Osman, Azlan, Ul Rehman, Shafiq
Conference Name2020 2nd International Conference on Industrial Electrical and Electronics (ICIEE)
Date Publishedoct
Keywordscloud computing, composability, DoS, firewall, IDS, IP networks, ipv6 security, Manganese, Metrics, Mobile IPv6, Monitoring, Optimization, policy-based governance, Protocols, pubcrawl, Resiliency, security
AbstractThe number of Mobile device users in the word has evolved rapidly. Many internet users currently want to connect the internet for all utilities automatically. One of the technologies in the IPv6 network, which supports data access from moving users, is IPv6 Mobile protocol. In its mobility, the users on a range of networks can move the range to another network. High demand for this technology will interest to a hacker or a cracker to carry out an attack. One of them is a DoS attack that compromises a target to denial its services. A firewall is usually used to protect networks from external attacks. However, since the firewall based on the attacker database, the unknown may not be detected. In order to address the obstacle, a detection tool could be used. In this research, IDS as an intrusion detection tool was integrated with a firewall to be implemented in IPv6 Mobile to stop the DoS attack. The results of some experiments showed that the integration system could block the attack at 0.9 s in Correspondent Node and 1.2 s in Home Agent. The blocked attack can decrease the network throughput up to 27.44% when a Mobile Node in Home Agent, 28,87% when the Mobile Node in a Foreign Network. The final result of the blocked attack is reducing the average CPU utilization up to 30.99%.
DOI10.1109/ICIEE49813.2020.9277354
Citation Keypraptodiyono_integration_2020