@inproceedings{e0d3c5b38ef84dbd81d4db08f69e07aa,
title = "E2E: An optimized IPsec architecture for secure and fast offload",
abstract = "When mobile End Users are offloaded from aRadio Access Network (RAN) to a WLAN, current I-WLAN [1]offloaded architectures consider traffic converging to a commonSecurity Gateway. In this paper, we propose an alternativeEnd-to-End security (E2E) architecture based on the MOBIKE-X [2] protocol, which extends the MOBIKE [3] Mobility andMultihoming features to Multiple Interfaces and to the Transportmode of IPsec. The benefits of this E2E architecture are mostlyload reduction and a better End User experience. First, E2Eoffloads the ISP CORE and backhaul networks, then E2E usesIPsec Transport mode instead of Tunnel mode, which removesnetworking and security overhead. This reduces CPU load by20\%, enhances Mobility and Multihoming operations by about15\%, and makes the system 2.9 times more reactive for detectingmodifications of interfaces.",
keywords = "IKEv2, IPsec, MOBIKE, MOBIKE-X, Mobility, Multihoming",
author = "Daniel Migault and Daniel Palomares and Emmanuel Herbert and Wei You and Gabriel Ganne and Ghada Arfaoui and Maryline Laurent",
year = "2012",
month = jan,
day = "1",
doi = "10.1109/ARES.2012.80",
language = "English",
isbn = "9780769547756",
series = "Proceedings - 2012 7th International Conference on Availability, Reliability and Security, ARES 2012",
publisher = "IEEE Computer Society",
pages = "365--374",
booktitle = "Proceedings - 2012 7th International Conference on Availability, Reliability and Security, ARES 2012",
note = "2012 7th International Conference on Availability, Reliability and Security, ARES 2012 ; Conference date: 20-08-2012 Through 24-08-2012",
}