摘要:
If security cannot be ensured between a mobile node and a corresponding node for the communication utilizing Mobile IPv6, communication is exposed to a threat such as tapping of communication content at the moving destination when the mobile node makes the route-optimized communication. In the case where the route-optimized communication is conducted for a communication partner as the communication using the. Mobile IPv6, the mobile node has the automatic setting function to use the IPsec and also has the function to use the tunnel protected by the IPsec between the mobile node and the home agent apparatus when the setting of the IPsec with the communication partner fails.
摘要:
Security policy databases capable of being fast retrieved while securing sequentiality. An IPSec processing device of the present invention performs communications by encrypting IP packets exchanged between a first IP network and a second IP network. The IPSec processing device includes a security policy database that stores security policies. The security policy database includes first, second, and third security policy databases. The first and third security policy databases include a linear list structure, and the second security policy database includes a hash list structure. The IPSec processing device, when performing at least one of transmission and reception of the IP packet, retrieves a security policy in the order of the first, second, and third security policy databases.
摘要:
Security policy databases capable of being fast retrieved while securing sequentiality. An IPSec processing device of the present invention performs communications by encrypting IP packets exchanged between a first IP network and a second IP network. The IPSec processing device includes a security policy database that stores security policies. The security policy database includes first, second, and third security policy databases. The first and third security policy databases include a linear list structure, and the second security policy database includes a hash list structure. The IPSec processing device, when performing at least one of transmission and reception of the IP packet, retrieves a security policy in the order of the first, second, and third security policy databases.
摘要:
To prevent a hung-up of communications due to changes in a radio wave condition resulting from frequent displacement of the terminals and changes in a number of the terminals, and to realize switching of the radio systems adapting to the radio condition. A radio communication system comprising: a base station for providing a plurality of radio systems, and terminals for communicating with the base station through the plurality of radio systems. The base station decides a priority of the radio system on which the each terminal will communicate thereafter and transmits paging signals of one of the plurality of radio systems which includes information on the decided priority to the each terminal.
摘要:
It is provided a mobile communication system comprising base stations, call control servers and access gateways. The call control servers cause a mobile terminal accommodated in one of the control server to transmit the location registration request so that the mobile terminal accommodates in another control server according to a processing amount of control signals. The base station selects a second call control server into which the one of the mobile terminals is to be newly accommodated. The one of the call control server switches to a power-saving state after the mobile terminal is accommodated into the another call control server.
摘要:
To prevent a hung-up of communications due to changes in a radio wave condition resulting from frequent displacement of the terminals and changes in a number of the terminals, and to realize switching of the radio systems adapting to the radio condition. A radio communication system comprising: a base station for providing a plurality of radio systems, and terminals for communicating with the base station through the plurality of radio systems. The base station decides a priority of the radio system on which the each terminal will communicate thereafter and transmits paging signals of one of the plurality of radio systems which includes information on the decided priority to the each terminal.
摘要:
Since, in Mobile IP, the correspondence of one Mobile Node home address and a care-of address is assumed to be one to one, it is not possible to associate multiple care-of addresses with one home addresses, select an appropriate care-of address from among these and dynamically modify the forwarding destination. In the invention, the binding update sent by the Mobile Node to the Home Agent is extended in order to make it possible to also report the application ID at the same time. The Home Agent selects an appropriate care-of address, based on the application ID.
摘要:
A method and apparatus are provided for mobile communication utilizing load balancing. When a home agent (HA) consists of one or more servers with each server being assigned a Mobile IPv6 Home-Agents Anycast Address, a nearby router does not store the link-layer addresses with respect to the Anycast addresses of the servers in its neighbor cache. Consequently, load balancing between or among the servers could not be performed. To solve this problem, in one example, an HA is provided that comprises a representative HA and distributed HAs. The representative HA is assigned an Anycast Address. The representative HA includes a collecting device configured to collect HA lists and load information from the distributed HAs. The representative HA dynamically creates a HA list and sends the HA list to a mobile node (MN). The MN registers its current location with an HA from the HA list included in a Home Agent Address Discovery Reply message. The load on the HA can then be shared by the servers constituting the HA.
摘要:
By assigning a fixed home address to an MN, Mobile IPv6 assures the arrival of each content at the MN 1. In order to allow the user to receive a Mobile IPv6 service, it is necessary to provide the MN 1 with a Mobile IPv6 function for making applications conform to IPv6. However, there are only few such MNs 1. In addition, the MN 1 does not have a function for implementing an IPsec process repeatedly on a packet transmitted to and received from another apparatus. A scenario processing port 23 employed in the MN 1 includes a means, which is used for selecting a process according to a communication method and carrying out the selected process when a response to a Mobile IPv6 location registration message is received. By providing the scenario processing port 23 with a means for selecting a communication method, a function can be added to the MN 1 with ease. In addition, by providing the MN 1 with a means for implementing an IPsec process a plurality of times, it is possible to provide a communication apparatus according to a security management configuration.
摘要:
Disclosed herewith is a communication system, which can solve the following conventional problem that if packets exchanged between a terminal and an HA are encapsulated with use of the mobile IPv6 protocol, the PDSN cannot identify any IP flows in the mobile IPv6 tunnel. Consequently, there is no QoS usable appropriately to the services in the EV-D0 RAN. To solve such a problem, the PCRF notifies the HA of the filter information used to specify each IP flow and the flow label assigned to each IP flow. The HA then sets the flow label in the outer IPv6 header of the packet matching with the filter information and transfers the packet to the object unit. The PDSN then refers to the flow label set in the outer IPv6 header to identify the object IP flow in the mobile IPv6 tunnel. Consequently, a proper QoS can be usable for the services respectively in the EV-D0 RAN.