【24h】

Towards Better Key Exchange Performance in IPSec-Based VPNs

机译:在基于IPSec的VPN中提高密钥交换性能

获取原文
获取原文并翻译 | 示例

摘要

Virtual Private Networks (VPNs) provide an inexpensive and scalable solution for the transfer of sensitive data through an unsecured network by creating a "tunnel" from sender to receiver. One of the most popular protocols for creating VPNs is the IPSec protocol suite, where secure key negotiation and exchange must be done first, before any encryption of data can take place. This article examines the latest VPN technologies focusing on one of the factors that have an effect on VPN performance and scalability, namely security key management. A new aggregation key exchange approach compatible to current technologies is proposed for improving the key exchange performance in large VPN systems. The new approach represents a trade-off between performance and security. A simulation model based on the Network Simulator (ns) was developed for this new approach. Simulation experiments for various scenarios were conducted and their results were compared to the traditional key exchange scheme.
机译:虚拟专用网络(VPN)通过创建从发送者到接收者的“隧道”,为通过不安全的网络传输敏感数据提供了一种廉价且可扩展的解决方案。用于创建VPN的最流行的协议之一是IPSec协议套件,其中必须首先进行安全密钥协商和交换,然后才能进行数据的任何加密。本文研究最新的VPN技术,重点关注影响VPN性能和可伸缩性的因素之一,即安全密钥管理。为了改善大型VPN系统中的密钥交换性能,提出了一种与当前技术兼容的新聚合密钥交换方法。新方法代表了性能和安全性之间的折衷。针对这种新方法,开发了基于网络仿真器(ns)的仿真模型。进行了各种场景的模拟实验,并将其结果与传统的密钥交换方案进行了比较。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号