摘要
文章深入分析研究了IKE协议主模式认证的交换过程及认证机理,针对基于预共享密钥认证方式中存在的仅适用于固定IP地址和不能保护通信双方身份信息,以及基于数字签名认证方式中存在的不能保护协议发起方身份信息的缺陷,分别给出了相应的改进方案,并与以往改进方案进行了分析比较。
This paper analyzes the exchange and authentication process of the IKE main mode protocol,for the exisiting problem of the limitation on application of nomadic users and its identity problem defects in the IKE protocol with pre_shared key,and the identity problem defects of the initiator in the IKE protocol with digital signature,the improving methods are presented accordingly,which are compared with the methods in other papers.
出处
《计算机工程与应用》
CSCD
北大核心
2006年第9期120-122,128,共4页
Computer Engineering and Applications
关键词
预共享密钥
数字签名
IKE协议
身份保护
中间人攻击
pre_shared key,digital signature,IKE protocol,identity protection,man in the middle