【24h】

An implementation of internet protocol options for self-authentication

机译:用于自我认证的Internet协议选项的实现

获取原文

摘要

This paper presents an enhancement of IP (Internet Protocol) standard to support user authentication within the protocol itself. The options field in an IP header is used for carrying specific data to add the ability of self-authentication. The specific data consist of a user identifier, a timestamp, and an HMAC calculated with important data in the IP header. The major purpose is to verify a device owner or a computer user in a local network in real time, before allowing access to restricted networks or the Internet. By this enhancement, the users can be authenticated at IP layer, without needing an additional user authentication process. The self-authentication ability provides a prevention of sending source-spoofed IP packet and also provides a high reliability of identifying the user. In addition, this ability does not require a creation of specific connection and an exchange of security parameters.
机译:本文提出了IP(Internet协议)标准的增强功能,以支持协议本身内的用户身份验证。 IP标头中的options字段用于承载特定数据,以增加自我认证的能力。特定数据包括用户标识符,时间戳和使用IP头中的重要数据计算出的HMAC。主要目的是在允许访问受限网络或Internet之前实时验证本地网络中的设备所有者或计算机用户。通过此增强功能,可以在IP层上对用户进行身份验证,而无需其他用户身份验证过程。自我认证功能可以防止发送源欺骗的IP数据包,并提供了识别用户的高可靠性。此外,此功能不需要创建特定的连接和交换安全参数。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号