期刊文献+

基于Diameter的可信接入网络技术设计 被引量:1

Design of Trusted Access Network based on Diameter
下载PDF
导出
摘要 基于局域网协议架构的可信网络接入认证受局域网协议的缺陷限制,如网络扩容受限、缺乏端端安全保护、不可靠UDP传输以及无失败恢复机制等问题,目前仅能在小规模局域网应用。针对局域网可信网络接入认证的缺陷和广域网可信接入认证的应用需求,提出了一种基于Diameter协议基础架构的可信接入认证方法,包括协议流程和网络架构设计,具备广域网部署应用、可信度量特征可细腻度粒化以及端到端安全保护等特征。 Currently,trusted network access authentication based on the LAN protocol architecture is limited by the defects of the LAN protocol,such as limited network expansion,lack of end-to-end security protection,unreliable UDP transmission,no failure recovery mechanism,and other problems.And it can only be applied in small-scale local area networks at present.Aiming at the defects of LAN trusted network access authentication and the application requirements of WAN trusted access authentication,a trusted access authentication method based on the Diameter protocol infrastructure is proposed.This method involves protocol process and network architecture design,and has the characteristics of wide area network deployment and application,reliable measurement features,fine granularity and end-to-end security protection.
作者 杨帆 杨玉发 李春林 YANG Fan;YANG Yu-fa;LI Chun-lin(No.30 Institute of CETC,Chengdu Sichuan 610041,China)
出处 《通信技术》 2020年第10期2495-2500,共6页 Communications Technology
基金 四川省科技计划资助(No.2017GZDZX0002) 四川省科技计划资助(No.2018JY0377)。
关键词 可信网络 DIAMETER 广域网可信认证 RADIUS trust network Diameter WAN trusted authentication Radius
  • 相关文献

参考文献2

二级参考文献12

  • 1曾翔,杨世平.基于Ipsec的VPN技术及其安全性的分析[J].网络安全技术与应用,2004(10):27-29. 被引量:2
  • 2秦中元,胡爱群.可信计算系统及其研究现状[J].计算机工程,2006,32(14):111-113. 被引量:17
  • 3R.Housley.IETF RFC 2630 Cryptographic Message Syntax[S].1999.
  • 4Pat R.Calhoun.AAA Working Group RFC draft-ietf-aaa-diameter-17.txt[S].2002.
  • 5Pat R.Calhoun.AAA Working Group RFC draft-ietf-aaa-diameter-cms -sec-04.txt[S].2002.
  • 6余勇.IPSec、SSL、S-HTTP和S/MIME安全协议的比较[EB/OL].赛迪网
  • 7Trusted Computing Group. TCG Trusted Network Connect TNC Architecture for Interoperability[S]. https: //www. trustedcomputinggroup.org. 2009, 5, 18.Version 1.4.
  • 8Cisco. Cisco Network Admission Control[EB/OL]. http: // www.infosec.co.uk/Exhibitor Library/78/Cisco_NAC.pdf, 2003.
  • 9Microsoft. Network Access Pretecfion Platform Architec~B/OL]. http: // www. microsoft.corn/ windowsserver2003/ technologies/networking/nap/default.mspx, 2004, 6.
  • 10李鸿培.可信网络架构[EB/OL].http://www.jcies2005.org/Framework%200f%20a%20Trusted%20Network.pdf2005.12.

共引文献4

同被引文献7

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部