A cryptographic one-to-many reversible mapping for IPv6 address generation and identification in enterprise WLANs /

This thesis presents a novel application of cryptographic one-to-many reversible mapping scheme between the user space and the IPv6 address space. The mapping mechanism is developed to improve IPv6 addresses generation and identification in an enterprise wireless local area network (LAN). Each time...

Full description

Saved in:
Bibliographic Details
Main Author: Hakiem, Nashrul
Format: Thesis
Language:English
Published: Kuala Lumpur : Kulliyyah of Engineering, Internatiional Islamic University Malaysia, 2014
Subjects:
Online Access:http://studentrepo.iium.edu.my/handle/123456789/4593
Tags: Add Tag
No Tags, Be the first to tag this record!
LEADER 037090000a22002770004500
008 170418t2014 my a g m 000 0 eng d
040 |a UIAM  |b eng 
041 |a eng 
043 |a a-my--- 
050 |a TK5105.8835 
100 1 |a Hakiem, Nashrul 
245 1 2 |a A cryptographic one-to-many reversible mapping for IPv6 address generation and identification in enterprise WLANs /  |c by Nashrul Hakiem 
260 |a Kuala Lumpur :  |b Kulliyyah of Engineering, Internatiional Islamic University Malaysia,  |c 2014 
300 |a xx, 163 leaves :  |b ill. ;  |c 30cm. 
502 |a Thesis (Ph.D)--International Islamic University Malaysia, 2014. 
504 |a Includes bibliographical references (leaves 134-136). 
520 |a This thesis presents a novel application of cryptographic one-to-many reversible mapping scheme between the user space and the IPv6 address space. The mapping mechanism is developed to improve IPv6 addresses generation and identification in an enterprise wireless local area network (LAN). Each time a user accesses the network, a dynamic IPv6 address is given via a Dynamic Host Configuration Protocol for IPv6 (DHCPv6) server. The main purpose of dynamic address is to protect a user from unwanted behaviour analysis exploiting IPv6 addresses, thus protecting user privacy. The dynamic address can be uniquely linked to the particular user; this has benefit, namely to allow a network administrator to single out a user based on a captured IPv6 address during any security event. The IPv6 address is generated dynamically using three mechanisms namely Bit Distribution, Simplified Advanced Encryption Standard (S-AES), and Cipher Feedback (CFB) mode of AES mechanisms based on user identity. The performance of the one-to-many reversible mapping for stateful IPv6 address assignment is evaluated in terms of the computational complexity, collision probability, and randomness. The computational complexity is evaluated based on the running (processing) time and the number of CPU clock cycles. The randomness test is measured in terms of uniformity based on monobit tests and avalanche effect based on Hamming distance test. The computational complexity test results show that the CFB-AES is the highest among the other mechanisms, however the processing time is still practical since it takes less than 100 milliseconds for generating or identifying an address. The collision probability calculation shows that it is very small indeed on the order of 262 even if it is assumed that the maximum numbers within enterprise LAN are connected in the same time (1.49e-8). The randomness test results show that all mechanisms pass the uniformity test. However, it is only the mechanism which uses the CFB-AES have passed the avalanche effect test and it can be considered to be random with a confidence level of 99%. It is recommended that the IPv6 address generation may be incorporated as an extension to the current DHCPv6 software and the IPv6 address owner identification may be implemented as a complement of local area network monitoring software. 
596 |a 1 
655 7 |a Theses, IIUM local 
690 |a Dissertations, Academic  |x Kulliyyah of Engineering  |z IIUM 
710 2 |a International Islamic University Malaysia.  |b Kulliyyah of Engineering 
856 4 |u http://studentrepo.iium.edu.my/handle/123456789/4593 
900 |a sbh-lfr 
999 |c 436886  |d 469624 
952 |0 0  |6 T TK 005105.8835 H155C 2014  |7 0  |8 THESES  |9 759903  |a IIUM  |b IIUM  |c MULTIMEDIA  |g 0.00  |o t TK 5105.8835 H155C 2014  |p 11100334631  |r 2017-10-20  |t 1  |v 0.00  |y THESIS 
952 |0 0  |6 TS CDF TK 5105.8835 H155C 2014  |7 0  |8 THESES  |9 852693  |a IIUM  |b IIUM  |c MULTIMEDIA  |g 0.00  |o ts cdf TK 5105.8835 H155C 2014  |p 11100334632  |r 2017-10-26  |t 1  |v 0.00  |y THESISDIG