首页> 外文期刊>International journal of communication networks and distributed systems >Formal analysis of efficiency and safety in IPSec based on internet key exchange protocol
【24h】

Formal analysis of efficiency and safety in IPSec based on internet key exchange protocol

机译:基于Internet密钥交换协议的IPSec效率和安全性的形式化分析

获取原文
获取原文并翻译 | 示例
           

摘要

IPSec is a framework of open standards for providing secure communications over internet protocol (IP) networks. The kernel of the IP security architecture is the internet key exchange protocol (IKE). IKE is an automatic method for key exchange and confidential parameters used in AH and ESP encapsulation. However, IKE protocol has a number of weaknesses; the two most important ones are the high complexity of the protocol and the vulnerability to passive and active attacks. To deal with these problems, several improvements have been proposed. In this paper, we propose a new IKE protocol based on elliptic curve cryptography, which aims to achieve a high-security level and efficiency. The security analysis and formal verification using automated validation of internet security protocols and applications (AVISPA) tools show that our contribution can resist to various attack types such as modification, reflection, replay, DoS and man-in-the-middle. The comparison between our proposed IKE protocol and other IKE protocols shows that our new protocol is more efficient with less computation complexity.
机译:IPSec是开放标准的框架,用于通过Internet协议(IP)网络提供安全的通信。 IP安全体系结构的内核是Internet密钥交换协议(IKE)。 IKE是用于AH和ESP封装的密钥交换和机密参数的自动方法。但是,IKE协议有许多缺点。最重要的两个是协议的高度复杂性以及被动和主动攻击的脆弱性。为了解决这些问题,已经提出了一些改进。在本文中,我们提出了一种基于椭圆曲线密码学的新IKE协议,旨在达到较高的安全级别和效率。使用Internet安全协议和应用程序的自动验证(AVISPA)工具进行的安全分析和形式验证表明,我们的贡献可以抵御各种攻击类型,如修改,反射,重播,DoS和中间人。我们提议的IKE协议与其他IKE协议之间的比较表明,我们的新协议更有效,计算复杂度更低。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号