Design and deployment of IPv6 address management system on research networks

Recently, research for Future Internet has been proposed and carried out in order to address two kinds of issues. First, the existing Internet protocol does not use new identifiers, and secondly the Internet protocol should be improved to meet usage requirements. Internet Protocol version 6 (IPv6) has been applied to fix the second issue. IPv6 has almost infinite address space. In addition, it has a significant feature in that it allows the host to generate and configure its own IPv6 addresses. We call that feature the Stateless Address Auto Configuration (SLAAC). However, this feature has drawbacks with respect to security for the network management system. Illegal hosts or unauthorized hosts could access the network and attack critical equipment, such as financial or industrial IT infrastructure. Users are exposed to such attacks as identity theft. In order to solve this issue, a host management method is needed to control and protect from illegal or unauthorized hosts. In this paper, we developed and implemented a mechanism for collecting host information and blocking specific hosts using features of ICMPv6. This proposal is tested and implemented in Korea Advance Research Network (KOREN). Through this, our solution covers the mechanisms to control host which is illegal or unauthorized in local network. Therefore, it can be protection from any Virus, DDOS and etc.