DoS Vulnerability Verification of IPSec VPN

TitleDoS Vulnerability Verification of IPSec VPN
Publication TypeConference Paper
Year of Publication2020
AuthorsZhou, Yimin, Zhang, Kai
Conference Name2020 IEEE International Conference on Artificial Intelligence and Computer Applications (ICAICA)
Keywordscomposability, compositionality, DoS, Encryption, IKEv1 protocol, IP networks, IPsec VPN, OSPF protocol, policy-based governance, privacy, protocol verification, pubcrawl, route spoofing, Routing protocols, Servers, Virtual private networks
AbstractThis paper analyzes the vulnerability in the process of key negotiation between the main mode and aggressive mode of IKEv1 protocol in IPSec VPN, and proposes a DOS attack method based on OSPF protocol adjacent route spoofing. The experiment verifies the insecurity of IPSec VPN using IKEv1 protocol. This attack method has the advantages of lower cost and easier operation compared with using botnet.
