1 / 8

Preferred Alternatives for Tunnelling HIP (PATH)

Preferred Alternatives for Tunnelling HIP (PATH). < draft-nikander-hip-path-00.txt > P. Nikander, H. Tschofenig, T. Henderson, L. Eggert, J. Laganier. Idea. Allow HIP to traverse LEGACY NATs by reusing EXISTING mechanisms Area of investigation:

ckoon
Download Presentation

Preferred Alternatives for Tunnelling HIP (PATH)

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. Preferred Alternatives for Tunnelling HIP (PATH) <draft-nikander-hip-path-00.txt> P. Nikander, H. Tschofenig, T. Henderson, L. Eggert, J. Laganier

  2. Idea • Allow HIP to traverse LEGACY NATs by reusing EXISTING mechanisms • Area of investigation: • HIP protocol interaction between two HIP endpoints • HIP protocol interaction considering rendezvous servers

  3. What extensions are necessary? • UDP encapsulation for HIP messages • UDP encapsulation for IPsec payloads • NAT detection payload • Ability to carry locator format with port numbers

  4. Open Issues (related to interaction with PATH server)

  5. HIP PATH Network Address HIP Initiator Server Translator Responder | | | | | I1 over IP | | | | ----------------> | I1 over UDP | I1 over UDP | | | ----------------> | ----------------> | | | | | | | R1 over UDP | R1 over UDP | | R1 over IP | with UDP-REA | with UDP-REA | | without UDP-REA | <---------------- | <---------------- | | <---------------- | | | | | | | | I2 over IP | | | | without UDP-REA | I2 over UDP | I2 over UDP | | ----------------> | without UDP-REA | without UDP-REA | | | ----------------> | ----------------> | | | | | | | R2 over UDP | R2 over UDP | | R2 over IP | <---------------- | <---------------- | | <---------------- | | | | | | | | IPsec ESP | IPsec ESP | IPsec ESP | | <===============> | over UDP | over UDP | | | <================ | ================> | HIP and IPsec packets travel via the PATH server

  6. HIP PATH Network Address HIP Initiator Server Translator Responder | | | | | I1 over IP | | | | ----------------> | I1 over UDP | I1 over UDP | | | ----------------> | ----------------> | | | | | | | R1 over UDP | R1 over UDP | | R1 over IP | with UDP-REA | with UDP-REA | | with UDP-REA | <---------------- | <---------------- | | <---------------- | | | | | | | | I2 over IP | | | | without UDP-REA | I2 over UDP | I2 over UDP | | ----------------> | without UDP-REA | without UDP-REA | | | ----------------> | ----------------> | | | | | | R2 over UDP | R2 over UDP | R2 over UDP | | <------------------------------------ | <---------------- | | | | | | IPsec ESP | IPsec ESP | IPsec ESP | | over UDP | over UDP | over UDP | | <==================================== | ================> | Most HIP messages travel via the PATH server IPsec messages do not travel via the PATH server

  7. HIP PATH Network Address HIP Initiator Server Translator Responder | | | | | I1 over IP | | | | ----------------> | I1 over UDP | I1 over UDP | | | ----------------> | ----------------> | | | | | | | R1 over UDP | R1 over UDP | | R1 over IP | with UDP-REA | with UDP-REA | | with UDP-REA | <---------------- | <---------------- | | <---------------- | | | | | | | | I2 over UDP | I2 over UDP | I2 over UDP | | with UDP-REA | with UDP-REA | with UDP-REA | | ------------------------------------> | ----------------> | | | | | | R2 over UDP | R2 over UDP | R2 over UDP | | with UDP-REA | with UDP-REA | with UDP-REA | | <------------------------------------ | <---------------- | | | | | | IPsec ESP | IPsec ESP | IPsec ESP | | over UDP | over UDP | over UDP | | <==================================== | ================> | Some HIP messages travel via the PATH server IPsec messages do not travel via the PATH server

  8. Questions • Maybe there are other ways to interact with the PATH server • Should we decide on a single approach? • The type of NAT we would like to support is an important design decision. • Better alignment with RVS and HIP registration protocol is needed.

More Related