期刊文献+

基于SNMP的VPN集中管理若干关键技术研究 被引量:1

Research on key technology of VPN centralized management based on SNMP
下载PDF
导出
摘要 广域网环境下,基于SNMP的远程集中管理可对中、大规模VPN网络实现高效安全的管理。为解决网管系统在拓扑发现方面存在的缺陷,提出了采用设备代理主动注册的解决办法。基于SNMPv3安全特性的分析,引入了公钥认证的机制,详细介绍了密钥协商的具体流程,较好地解决了网络管理协议在身份认证及加密传输方面的不足。针对基于无连接传输服务的SNMP数据传输无法保证其可靠性和实时性的不足,给出了基于XML的集中配置实现策略,实验结果表明了该策略的可行性和有效性。 Under the WAN environment, large-scale VPN networks is effectively and safely managed by long-distance centralized management system based on SNME To solve the flaw of topology discovery, a method in which agent initiates registry to the server is proposed. After analysis of the SNMPv3 security features, the public key authentication mechanism is introduced and the procedure of key negotiation is discussed in detail. For poor reliability and real-time data transmission of UDP-based SNMP, a strategy of configuration based on XML is given, which is proved to be feasible and efficient by the result of experiment at last.
出处 《计算机工程与设计》 CSCD 北大核心 2008年第9期2186-2188,2400,共4页 Computer Engineering and Design
基金 浙江省科技重点基金项目(2006C21028) 澳门科技基金项目(005/2006/A) 浙江省重大科技专项重点基金项目(2006C11105)
关键词 虚拟专用网 简单网络管理协议 拓扑发现 可拓展标记语言 密钥协商 VPN SNMP topology discovery XML key negotiation
  • 相关文献

参考文献8

二级参考文献26

  • 1冯登国 荆继武编.信息安全国家重点实验室PKI研究报告[R].,2002..
  • 2Case J,McCloghrie K,Rose M et al.Protocol Operations for Version 2 of the Simple Network Management Protocol(SNMPv2)[S].RFC 1905, 1996-01.
  • 3M Oehler,R Glenn.HMAC-MD5 IP Authentication with Replay Prevention[S].RFC 2085,1997-11.
  • 4Kent S,Atkinson R.Security Architecture for the Internet Protocol[S].RFC 2401,1998-11.
  • 5Piper D.The Internet IP Security Domain of Interpretation for ISAK MP[S].RFC 2407,1998-11.
  • 6Maughan D,Schertler M,Schneider Met al.Internet Security Association and Key Management Protocol(ISAKMP)[S].RFC 2408,1998-11.
  • 7Harkins D,Carrel D.The Internet Key Exchange(IKE)[S].RFC 2409, 1998-11.
  • 8Case J,Mundy R,Partain D et al.Introduction to Version 3 of the Intemet-standard Network Management Framework[S].RFC 2570,1999-O4.
  • 9Harrington D,Presuhn R,B Wijnen.An Architecture for describing SNMP Management Frameworks[S].RFC 2571,1999-04.
  • 10Case J,Harrington D,Presuhn R et al.Message Processing and Dispatching for the Simple Network Management Protocol(SNMP)[S].RFC 2572,1999-04.

共引文献34

同被引文献8

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部