WEKO3
アイテム
IPv4/IPv6デュアルスタック環境におけるDNSを用いたIPv6機器発見の手法とその回避策の一考察
https://ipsj.ixsq.nii.ac.jp/records/96470
https://ipsj.ixsq.nii.ac.jp/records/964703a5009b3-aead-4d0d-8fb0-5f9bdf51e829
| 名前 / ファイル | ライセンス | アクション |
|---|---|---|
|
|
Copyright (c) 2013 by the Information Processing Society of Japan
|
|
| オープンアクセス | ||
| Item type | Symposium(1) | |||||||||
|---|---|---|---|---|---|---|---|---|---|---|
| 公開日 | 2013-12-05 | |||||||||
| タイトル | ||||||||||
| タイトル | IPv4/IPv6デュアルスタック環境におけるDNSを用いたIPv6機器発見の手法とその回避策の一考察 | |||||||||
| タイトル | ||||||||||
| 言語 | en | |||||||||
| タイトル | Considerations on Remote Detection of Active IPv6 Addresses under IPv4/IPv6 Dual-stack Environment using DNS | |||||||||
| 言語 | ||||||||||
| 言語 | jpn | |||||||||
| 資源タイプ | ||||||||||
| 資源タイプ識別子 | http://purl.org/coar/resource_type/c_5794 | |||||||||
| 資源タイプ | conference paper | |||||||||
| 著者所属 | ||||||||||
| 京都工芸繊維大学大学院工芸科学研究科情報工学専攻 | ||||||||||
| 著者所属 | ||||||||||
| 京都工芸繊維大学情報科学センター | ||||||||||
| 著者所属(英) | ||||||||||
| en | ||||||||||
| Graduate School of Information Science, Kyoto Institute of Technology | ||||||||||
| 著者所属(英) | ||||||||||
| en | ||||||||||
| Center for Information Science, Kyoto Institute of Technology | ||||||||||
| 著者名 |
曽我一喜
× 曽我一喜
× 桝田秀夫
|
|||||||||
| 論文抄録 | ||||||||||
| 内容記述タイプ | Other | |||||||||
| 内容記述 | IPv4 アドレスの在庫の枯渇に伴い,IPv6 導入の動きが活発になり,一つの通信ノードに IPv4 アドレスと IPv6 アドレスの両方が設定される IPv4/IPv6 デュアルスタック環境が一般的になりつつある.そういった環境では,サービス運用の観点などから,一つの FQDN に対して A レコードと AAAA レコードの複数のレコードが対応づけられることが一般的になる.一方,インターネットでは,接続されている脆弱な機器を探索するために,ポートスキャンが広く行われている.IPv4 に比べて膨大なアドレス空間を持つ IPv6 では,接続されている機器を外部から発見することは困難である.本稿では,デュアルスタック環境において,DNS を用いて IPv6 機器を発見しポートスキャン攻撃を可能とする手法とその回避策を考察する. | |||||||||
| 論文抄録(英) | ||||||||||
| 内容記述タイプ | Other | |||||||||
| 内容記述 | With a trigger of the IPv4 address exhaustion, IPv4/IPv6 dual-stack that both IPv4 and IPv6 addresses are set to one communication node will become general. From a viewpoint of the service operation, it becomes general that both A record and AAAA record are associated with one FQDN. On the other side, port-scanning is usually done to detect vulnerable host over the Internet. It is difficult that detection active host in IPv6 networks, because IPv6 provides a significantly larger address space than IPv4. This paper considers remote detection of active IPv6 addresses under IPv4/IPv6 Dual-stack environment using DNS. | |||||||||
| 書誌情報 |
インターネットと運用技術シンポジウム2013論文集 巻 2013, p. 107-110, 発行日 2013-12-05 |
|||||||||
| 出版者 | ||||||||||
| 言語 | ja | |||||||||
| 出版者 | 情報処理学会 | |||||||||