期刊文献+

一种增强的ZRTP认证机制 被引量:1

Enhanced Authentication Mechanism of ZRTP
下载PDF
导出
摘要 ZRTP本身的认证机制在一些特殊的情况下无法抵抗中间人攻击。为此,基于简单密钥协商协议(SAKA)提出一种NSAKA算法,改进ZRTP的认证机制,使用RFC4474中的SIP身份认证模型来安全传输用户预共享的秘密口令。通过分析表明,该方案可以提高ZRTP抵抗中间人攻击的能力,并弥补SAKA算法原有的安全缺陷。 The original authentication mechanism of Zimmermann RTP(ZRTP) is vulnerable to the Man In The Middle(MITM) attack in certain conditions,although it is a light-weighted and efficient key agreement protocol.This paper introduces a new algorithm named NSAKA to enhance the original mechanism,which is based on the basic concept of Simple Authentication Key Agreement(SAKA).The Session Initiation Protocol(SIP) identity authentication model of RFC4474 is also employed to securely transmit the users’ pre-shared secret password.The scheme can effectively enhance the ability to resist against the MITM attack of ZRTP and remedy the primary vulnerabilities of SAKA
出处 《计算机工程》 CAS CSCD 北大核心 2011年第13期119-121,124,共4页 Computer Engineering
关键词 SRTP协议 ZRTP协议 中间人攻击 SIP身份认证 简单认证密钥协商协议 Secure RTP(SRTP) Zimmermann RTP(ZRTP) Man In The Middle(M1TM) attack Session Initiation Protocol(SIP) identity authentication Simple Authentication Key Agreement(SAKA) protocol
  • 相关文献

参考文献2

二级参考文献6

  • 1俞志春,方滨兴,张兆心.SIP协议的安全性研究[J].计算机应用,2006,26(9):2124-2126. 被引量:21
  • 2Rosenberg J, Schulzrinne H, Camarillo G. SIP: Session Initiation Protocol[S]. RFC 3261, 2002.
  • 3Franks J, Hallam-Baker P, Hostetler J. HTTP Authentication: Basic and Digest Access Authentication[S]. RFC 2617, 1999.
  • 4Jennings C, Peterson J, Watson M. Private Extensions to the Session Initiation Protocol(SIP) for Asserted Identity within Trusted Networks[S]. RFC 3325, 2002.
  • 5Peterson J, Jennings C. Enhancements for Authenticated Identity Management in the Session Initiation Protocol(SIP)[S]. RFC 4474, 2006.
  • 6Krawczyk H, Bellare M, Canetti R. HMAC: Keyed-Hashing for Message Authentication[S]. RFC 2104, 1997.

共引文献2

同被引文献7

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部