摘要
会话初始协议(SIP)是VoIP在3GPP中的标准协议,也是3GPP的多媒体子系统(IMS)的重要组成部分。传统的SIP通信都是基于C/S模式,因此能够将VoIP技术与P2P结合无疑是一种新的尝试。面对复杂、开放的因特网环境,P2P和SIP的结合,带来了新的安全隐患,P2P-SIP的安全性有待进一步改进和提高。文章首先分析了P2P-SIP面临的注册攻击和拆卸会话攻击这两种安全威胁,接着又提出了相应的安全解决方案:基于网络层模型的安全机制,检测网络层的状态,用于判定是否有Attacker攻击,以及基于TLS的注册流程,面向连接的传输层安全服务。
Session Initiation Protocol(SiP) is a,q important protocol adopted by the 3rd Generation Partnership Projeot(3GPP) for the IP Multimedia Subsystem (IMS) and VolP.Compare with the traditional C/S model SIP communication systems,com- bining VolP with Peer-to-Peer technology is definitely a new attempt.Facing the complex and open ~ternet environment,the integration of P2P and SIP has brought new security risks,the security of P2P-SIP needs to be improved and enhanced.in this artiole,analyzded the threats of Registration Hijacking and Tearing Down Sessions to P2P-SIP at fist,and then provided the security solution to the both treats.
出处
《电子质量》
2010年第7期64-67,共4页
Electronics Quality
关键词
P2P-SIP
传输层安全
RTP
P2P-SIP
TLS(Transport Layer Security)
RTP(Reat Time Transport Protocol)