期刊文献+

面向IPv6加密通信的入侵检测设计

Design of intrusion detection system oriented to IPv6 encrypted conversation
下载PDF
导出
摘要 针对入侵检测系统在IPv6网络下检测加密通信时遇到的问题,提出了面向IPSec的入侵检测(IPSO-IDS)模型,该模型应用了非对称密钥机制和LDAP Server,改进了Snort的协议分析模块,设计了客户端密钥交换模块(KEM)、服务端KEM及IDS端KEM,并阐述了相互之间的操作过程。研究结果表明,该模型具有广阔的推广应用前景。 Aiming at the problem of analyzing the IPv6 encrypted conversation on intrusion detetion system, the IPSee oriented intrusion detection system(IPSO-IDS) model were proposed. In the model, the asymmetrical key mechanism and LDAP Server were applied, Snort protocol analysis module was improved. Customer-side key exchange module(KEM) , Server-side KEM and IDS-side KEM were designed. And the mutual operation between each other was explained. The research result shows that the model has the application prospect.
出处 《机电工程》 CAS 2009年第6期90-91,103,共3页 Journal of Mechanical & Electrical Engineering
关键词 IPV6 SNORT LDAP 面向IPSec的入侵检测 加密通信 密钥交换模块 IPv6 Snort LDAP IPSec oriented intrusion detection system(IPSO-IDS) encrypted conversation key exchange module( KEM )
  • 相关文献

参考文献5

  • 1KENT S, SEO K. Security Architecture for the Internet Protocol[S]. RFC4301,2005.
  • 2程璟睿,马严.IPSec与IPv6的网络安全[J].现代电信科技,2006(2):21-23. 被引量:8
  • 3WAHL M, HOWES T, KILLE S. Lightweight Directory Access Protocol (v3)[S]. RFC2251,1997.
  • 4DEERING S, HINDEN R. Internet Protocol Version6 (IPv6) Specification[S]. RFC2460,1998.
  • 5KENT S, ATKINSON R. IP Encapsulating Security Payload (ESP)[S]. RFC4203,2005.

二级参考文献4

  • 1(美)PeteLdshin著.IPv6详解[M].北京:机械工业出版社,2000..
  • 2RFC 2401:Security Architecture for the Internet Protocol.1998,11
  • 3RFC 2402:IP Authentication Header.1998,11
  • 4RFC 2406:IP Encapsulating Security Payload.1998,11

共引文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部