期刊文献+

一种改进的TCP连接迁移安全机制

Improved TCP Connection Migratory Secure Mechanism
下载PDF
导出
摘要 TCP连接迁移技术使网络可以在主服务器发生故障的情况下稳定地提供服务。该文分析基于椭圆曲线Diffie-Hellman密钥协商的连接迁移安全机制中存在的中间人攻击问题,利用改进的Helsinki协议进行连接密钥的协商,提出一种新的安全机制。该机制有效地保证了迁移选项的安全,利用安全哈希算法的抗碰撞性和安全性使攻击者难以猜测出连接标志和请求。 The service can .be provided steadily when primary server goes wrong by using TCP connection migratory technology. This paper analyzes the problem of man-in-the-middle attack existing in secure mechanism of the connection migratory based on ellipse curve Diffie-Hellman key negotiation. With the improved Helsinki protocol which is applied to negotiate the connection key, a novel secure mechanism is presented. This mechanism can protect the migratory options effectively. The function of resisting collision and the security of hash-algorithm make it hard for attackers to guess the connection symbol and request.
出处 《计算机工程》 CAS CSCD 北大核心 2008年第20期187-189,共3页 Computer Engineering
关键词 TCP连接迁移 迁移选项 Helsinki协议 安全性 TCP connection migratory migrate options Helsinki protocol security
  • 相关文献

参考文献5

  • 1杨兵,黄遵国,胡光明,胡华平.基于高可用性的动态漂移技术研究[J].计算机工程与科学,2004,26(2):4-6. 被引量:4
  • 2Snoeren A C, Andersen D G. Balakrishnan H. Fine-grained Failover Using Connection Migration[C]//Proceedings of USENIX Symposium on Internet Technologies and Systems. San Francisco, California, USA: [s. n.], 2001.
  • 3Sultan F, Srinivasan K. Migrat.ory TCP: Highly Available Intemet Services Using Connection Migration[R]. Rutgers, France: Rutgers University, Technical Report: DCS-TR-462, 2001,
  • 4Snoeren A C, Balakrishnan H. An End-to-end Approach to Host Mobility[Z]. Cambridge, England: MIT Laboratory for Computer Science, 2000.
  • 5Diffie W, Hellman M. New Directions in Cryptography[J]. IEEE Transactions on Information Theory, 1976, 22(6): 644-654.

二级参考文献11

  • 1[1]Florin Sultan, Kiran Srinivasam, Deepa Iyer, et al. Migratory TCP: Highly Available Internet Services Using Connection Migration[R]. Technical Report DCS-TR-462,Department of Computer Science Rutgers University Piscataway,2001.
  • 2[2]http://www.bind.org,2001-12.
  • 3[3]Alteon Web Systems. Layer 7 Web Switching[EB/OL]. http://www.alteonwebsystems.com/products/whitepapers/layer7switching, 2002-01.
  • 4[4]http://www.linuxvirtualserver.org, 2001-12.
  • 5[5]Ralf S Engelschall. Load Balancing Your Web Site[EB/OL].http://www.newarchitectmag.com/archives/1998/05/engelschall/,2002-01.
  • 6[6]DNS Round Robin High-Availability Load Sharing[EB/OL].http://www.polyserve.com, 2002-01.
  • 7[7]Cisco Systems. Failover Configuration for Local Director[EB/OL]. http://www.cisco.com/warp/public/cc/pd/cssr.400/tech/locdf_wp.htm, 2002-01.
  • 8[8]http://www.redhat.com/support/wpapers/piranha/, 2002-01.
  • 9[9]http://www.turbolinux.com, 2002-01.
  • 10[10]Alex C Snoeren, David G Andersen, Hari Balakrishnan. Fine-Grained Failover Using Connection Migration[A]. Proc of the 3rd Annual USENIX Sympon Internet Technologies and Systems(USITS)[C].2001.

共引文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部