Abstract
With the demand for mobility support, the incorporation of wireless communication technologies has created for entire networks. Network Mobility (NEMO) with the aim of extending existing Mobile IP enables the movement of networks. Users in a mobile network are unaware of their network’s mobility. Besides, security has become a critical issue for today’s Internet. Virtual Private Network (VPN) has been developed to secure user’s communication between untrusted external networks and the protected private internal network. In order to combine mobility with security, we present an architecture of VPN over NEMO which is based on Session Initiation Protocol (SIP). This thesis presents a SIP-Based VPN over NEMO that comprises of SIP, SRTP, cPRT, MICKY, and Diameter Server to provide security real-time service with mobility. Besides, we bring up an approach which is named ”USERLIST” to reduce SIP signaling messages. The proposed architecture is implemented based on the MIDCOM architecture. We use SIP Proxy to process the signaling exchanges. We also use Application Level Gateway (ALG) to function as a firewall and to act as a middle-box for protecting every legal mobile node outside of the private network from eavesdropping. Finally, a testbed for our proposed solution has been implemented and has experiments of end-to-end delay and handoff delay. And we also present a comparison of handoff delay among different number of users in a mobile network.