You are on page 1of 15

Nhng li th v thch thc ca IPv6 Security

Nguyn Minh c

Khc bit v security gia IPv6 v IPv4

IPv6 bao gm cc RFCs


RFC 24602: IPv6 Protocol RFC 48613: IPv6 Neighbour Discovery RFC 48624: IPv6 Stateless Address AutoConfiguration RFC 44435: Internet Control Message Protocol for IPv6 (ICMPv6) RFC 42916: IPv6 Addressing Architecture RFC 43017: Security Architecture for IP or IPsec

IPv4 v IPv6 Header

Source: TCPIP6

Cc vn v security ca IPv4
Denial of service attacks (DOS) Pht tn m c Tn cng dng MITM (Man-in-the-middle)

IPv6 vs IPv4 Security


1. Khng gian a ch IP ln hn 2. IP Security (IPSec) 3. Neighbour Discovery (ND) Protocol thay th cho ARP

Li th v security ca IPv6

IPSec: Authentication Header

Source: GMU

IPSec: Authentication Header

IPSec: Encapsulating Security Payload Header

Source: The TCP/IP Guide

Neighbour Discovery (ND) Protocol

Source: Realccielab

Mt s thch thc i vi IPv6

Mt s thch thc i vi IPv6


Tn cng tng ng dng
Web, Buffer Over Flow, m c... La o trc tuyn Password Bruteforce DoS v DDoS

Truy tm ngun tn cng

Kt lun
IPv6 l mt s ci tin ng k i vi IPv4 IPv6 c thit k vi nh hng m bo an ton v c nhiu u im tt hn IPv4 v bo mt Vn c th c mt s vn v security m cc tng khc cn gii quyt h tr cng IPv6

Xin cm n

You might also like