节点文献
IKE协议抵抗中间人攻击的研究
The Research on IKE Protocol Against Man in the Middle Attack
【摘要】 IKE协议是IPSec协议族中的自动密钥交换协议,用于动态地建立安全关联。在IKE协议中采用的D-H交换极易受到中间人攻击的威胁。通过深入研究中间人攻击的实现原理,并结合IKE协议中数字签名认证、公钥加密认证、预共享密钥认证三种认证方式详细论述了在该协议中是如何利用身份认证技术抵抗中间人攻击。
【Abstract】 IKE protocol is the current key exchange standard for IPSec protocol and used to establish SecurityAssociation(SA) dynamically. D-H exchange in IKE is prone to be threatened by man in the middle attack. By theanalysis of the principal of man in the middle attack, and the three authentication methods of signature authentication,public key authentication and pre-shared key authentication, this paper elaborates on how to use identity authentica-tion techniques to resist man in the middle attack in IKE protocol.
【关键词】 IKE;
密钥交换;
中间人攻击;
身份认证;
【Key words】 IKE; key exchange; man in the middle attack; identity authentication;
【Key words】 IKE; key exchange; man in the middle attack; identity authentication;
- 【文献出处】 网络安全技术与应用 ,Network Security Technology & Application , 编辑部邮箱 ,2005年04期
- 【分类号】TP393.08
- 【被引频次】2
- 【下载频次】155