【24h】

An implementation of internet protocol options for self-authentication

机译:用于自我认证的Internet协议选项的实现

获取原文

摘要

This paper presents an enhancement of IP (Internet Protocol) standard to support user authentication within the protocol itself. The options field in an IP header is used for carrying specific data to add the ability of self-authentication. The specific data consist of a user identifier, a timestamp, and an HMAC calculated with important data in the IP header. The major purpose is to verify a device owner or a computer user in a local network in real time, before allowing access to restricted networks or the Internet. By this enhancement, the users can be authenticated at IP layer, without needing an additional user authentication process. The self-authentication ability provides a prevention of sending source-spoofed IP packet and also provides a high reliability of identifying the user. In addition, this ability does not require a creation of specific connection and an exchange of security parameters.
机译:本文提高了IP(Internet协议)标准的增强,以支持协议本身内的用户身份验证。 IP标题中的选项字段用于携带特定数据以添加自我认证的功能。特定数据包括用户标识符,时间戳和使用IP报头中的重要数据计算的HMAC。在允许访问受限制的网络或因特网之前,主要目的是在本地网络中验证设备所有者或计算机用户。通过这种增强,可以在IP层身份认证用户,而无需其他用户身份验证过程。自认证能力提供了防止发送源欺骗的IP数据包,并提供识别用户的高可靠性。此外,这种能力不需要创建特定连接和安全参数交换。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号