Traffic Flow Confidentiality in IPsec: Protocol and Implementation
Traffic Flow Confidentiality in IPsec: Protocol and Implementation
复制标题
IPsec 中的流量机密性:协议和实现
DOI:
10.1007/978-0-387-79026-8_22
复制
发表时间:
2007
期刊:
影响因子:
--
通讯作者:
Emanuele Delzeri
中科院分区:
文献类型:
--
作者:
C. Király;S. Teofili;G. Bianchi;R. Cigno;Matteo Nardelli;Emanuele Delzeri
Traffic Flow Confidentiality (TFC) mechanisms are techniques devised to hide/masquerade the traffic pattern to prevent statistical traffic analysis attacks. Their inclusion in widespread security protocols, in conjunction with the ability for deployers to flexibly control their operation, might boost their adoption and improve privacy of future networks. This paper describes a TFC protocol integrated, as a security protocol, in the IPsec security architecture. A Linux-based implementation has been developed, supporting a variety of perpacket treatments (padding, fragmentation, dummy packet generation, and artificial alteration of the packet forwarding delay), in an easily combinable manner. Experimental results are reported to demonstrate the flexibility and the effectiveness of the TFC implementation.