发明名称 Methods and apparatus for securing proxy mobile IP
摘要 Various security mechanisms may be used independently, or in combination with one another, to authenticate the identity of a node during the Mobile IP registration process. First, an Access Point receiving a packet from a node verifies that the source MAC address identified in the packet is in the Access Point's client association table. In addition, as a second mechanism, the Access Point ensures that a one-to-one mapping exists for the source MAC address and source IP address identified in the packet in a mapping table maintained by the Access Point. As a third mechanism, a binding is not modified in the mobility binding table maintained by the Home Agent unless there is a one-to-one mapping in the mobility binding table between the source MAC address and the source IP address. Similarly, the Foreign Agent may also maintain a mapping between the source IP address and the source MAC address in its visitor table to ensure a one-to-one mapping between a source IP address and the associated MAC address.
申请公布号 AU2004234700(A1) 申请公布日期 2004.11.11
申请号 AU20040234700 申请日期 2004.04.28
申请人 CISCO TECHNOLOGY, INC. 发明人 GOPAL DOMMETY;KENT K. LEUNG
分类号 H04L12/56;H04L29/06;H04L29/08;H04L29/12;(IPC1-7):H04L29/06 主分类号 H04L12/56
代理机构 代理人
主权项
地址