节点文献

新一代Internet密钥交换协议的分析与改进

Improvement of the New Internet Key Exchange Protocol

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 曹春杰杨超马建峰

【机构】 西安电子科技大学计算机网络与信息安全教育部重点实验室

【摘要】 <正>1 引言 IPSec保护一个数据包之前,必须建立一个安全关联(SA),而SA的建立则是通过IKE实现的。但是IKE协议轮数太多、太复杂并且不能有效地防止DoS攻击。因此,IETF工作组征集了新的协议IKEv2E、JFK和SIGMA来代替IKE。最

【Abstract】 The new Internet key exchange protocol (IKEv2) can not achieve active identity protection to initiator in initial exchange. And it has the security flaw of authentication failure which can also be called a "denial of service attack". A novel key exchange protocol based on IKEv2 is presented. By using "alias" and involving the peer’s identity in signature, the new protocol can realize active identity protection to the initiator and successful authentication. Additionally, non-repudiation of the peers for their interactions is also achieved. Through the logic analysis and simulation, our protocol shows a more robust security and a better performance than other protocols.

【基金】 国家自然科学基金重大计划(90204012);国家自然科学基金(60573035,60573036);2003教育部科学技术研究重点项目资助
  • 【会议录名称】 2006年全国理论计算机科学学术年会论文集
  • 【会议名称】2006年全国理论计算机科学学术年会
  • 【会议时间】2006-08
  • 【会议地点】中国吉林长春
  • 【分类号】TP393.08
  • 【主办单位】中国计算机学会理论计算机科学专业委员会
节点文献中: 

本文链接的文献网络图示:

本文的引文网络