摘要
网络安全协议是保障信息安全的重要技术,是以密码学为基础的通信协议。加密、消息验证码、数字签名、密钥协商与密钥传输等技术在不同的网络安全协议中被用于实现数据通信过程中的机密性、完整性、不可否认性和真实性。分析密码学相关技术在具体的安全协议中的应用是《网络安全协议》课程的授课重点。本文在深入研究各层网络安全协议原理的基础上,总结了对称加密和非对称两种加密体制、消息验证码和数字签名两种完整性保护技术在网络安全协议中的具体应用,还以IPSec协议为例分析了网络安全协议中的密钥协商机制。
As an important technology to ensure information security,network security protocol is a communication protocol based on the cryptography.Encryption,message authentication code,digital signature,key agreement and key transmission technology are used to achieve confidentiality,integrity,non-repudiation and authenticity during the process of data communication in different network security protocols.Analyzing the application of technologies related to the cryptography in specific security protocols is the teaching focus of the network security protocol course.Based on an in-depth study on the principles of network security protocols,specific applications of the encryption schemes(including the symmetric and the asymmetric)and the integrity protection technologies(including the message authentication code and the digital signature)in network security protocols are summarized in this paper.In addition,the key agreement mechanism in network security protocols is analyzed with the IPSec protocol as an example.
作者
范洁
池亚平
李冬冬
FAN Jie;Chi Yaping;Li Dongdong(Beijing Electronic Science and Technology Institute,Beijing 100070,P.R.China)
出处
《北京电子科技学院学报》
2020年第2期61-69,共9页
Journal of Beijing Electronic Science And Technology Institute
基金
国家重点研发计划项目:私有云环境下服务化智能办公系统平台(2018YFB1004100)
关键词
网络安全协议
加密
消息验证码
数字签名
密钥协商
network security protocol
encryption
message authentication code
digital signature
key agreement