Issue No. 04 - July-Aug. (2012 vol. 10)
ISSN: 1540-7993
pp: 35-43
Randy Marchany , Virginia Tech
William Urbanski , Dell SecureWorks
Stephen Groat , Virginia Tech
Matthew Dunlop , Virginia Tech
Joseph Tront , Virginia Tech
Most networks today employ static network defenses. The problem with static defenses is that adversaries have unlimited time to circumvent them. This article proposes a moving-target defense based on the Internet Protocol version 6 (IPv6) that dynamically obscures network-layer and transport-layer addresses. This technique can be thought of as "frequency hopping" in the Internet Protocol space. By constantly moving the logical location of a host on a network, this technique prevents targeted attacks, host tracking, and eavesdropping. The authors demonstrate the design's feasibility and functionality using prototypes deployed on Virginia Tech's campuswide IPv6 network.
Logic gates, Privacy, Protocols, Receivers, Cryptography, IP networks, Target detection, privacy, moving-target defense, IPv6, security
"The Blind Man's Bluff Approach to Security Using IPv6"
