期刊文献+

家乡代理不支持EAP协议时的MIP6认证问题研究

Research of MIP6 authentication method when home agent does not support EAP
下载PDF
导出
摘要 针对Split场景下,家乡代理不支持EAP协议的问题,提出了一种基于diameter-EAP协议的认证方案。认证服务器在对移动节点进行认证时,通过支持EAP协议的接入路由器对移动节点进行身份认证,为移动节点和MIP6服务提供者配置共享密钥,用于服务提供者对移动节点的认证。采用BAN逻辑对协议的安全性进行了形式化证明,并比较分析了该方案的性能,分析结果表明,该协议的密钥性能达到了RFC4004的水平。 According to the issue that the home agent does not support EAP protocol in split scenario, an authentication solution based on diameter/EAP protocol is given. When the authentication server wants to authenticate the mobile node, it uses the ASP as the EAP authenticator. After authentication, it distributes the IKEv2 pre-shared key between the mobile node and home agent to the home agent. The security of IKEv2 pre-shared key distribution is proven using BAN logic, and the performance of this solution is analyzed.
出处 《计算机工程与设计》 CSCD 北大核心 2011年第5期1593-1596,共4页 Computer Engineering and Design
关键词 移动IPV6 认证 BAN逻辑 可扩展认证协议 互联网密钥交换协议版本2 MIP6 authentication BAN logic EAPprotocol IKEv2
  • 相关文献

参考文献11

  • 1Johnson D.Mobility support in IPv6[S].RFC3775, IETF, 2004.
  • 2Patel A. Problem statement for bootstrapping mobile IPv6 (MIPv6)[S].RFC4640, IETF, 2006.
  • 3Bournelle J.Diameter mobile IPv6: HA-to-AAAH support[S]. draft-ietf-dime-mip6-split-01, IETF, 2006.
  • 4Kaufman C. Intemet key exchange (IKEv2) protocol [S]. RFC4306, IETF, 2005.
  • 5Aboba B. Wxtensible authentication protocol (EAP) [S]. RFC3748, IETF, 2004.
  • 6Eronen P.Diameter extensible authentication protocol(EAP) application[S].RFC4072,IETF, 2005.
  • 7Aboba B. The network access identifier [S]. RFC4282, IETF, 2005.
  • 8S alowey J.Specification for the derivation of usage specific root keys(USRK) from an extended master session key(EMSK)[S]. draft-ietf-hokey-emsk-hierarchy-00, IETF, 2007.
  • 9Calhoun P.Diameter base protocol[S].RFC3588, IETF, 2003.
  • 10Burrows M,Abadi M,Needham R.A logic of authentication[J]. ACM Trans on Computer Systems, 1990,8(1): 18-36.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部