首页> 外国专利> Authentication for TCP-based routing and management protocols

Authentication for TCP-based routing and management protocols

机译:基于TCP的路由和管理协议的身份验证

摘要

A new Transmission Control Protocol (TCP) Enhanced Authentication Option is described. An administrator configures sending and receiving devices to maintain lists of authentication elements for each protected TCP connection. Each authentication element includes an authentication element identifier, a key, a hash algorithm, and a start time. A sending device calculates a security portion, updates the new TCP option to include the security portion, calculates a checksum, and forwards the TCP segment to the receiving device. Having received the authenticated TCP segment, the receiving device scans its list of authentication elements, searching for an authentication element whose identifier matches that of the incoming TCP option. If the receiving device finds such an authentication element, the receiving device uses a key from the authentication element to calculate a security portion. If the calculated security portion matches the security portion received in the incoming TCP segment, the receiving device accepts the segment.
机译:描述了新的传输控制协议(TCP)增强身份验证选项。管理员配置发送和接收设备以维护每个受保护TCP连接的身份验证元素列表。每个认证元素包括认证元素标识符,密钥,哈希算法和开始时间。发送设备计算安全性部分,更新新的TCP选项以包括安全性部分,计算校验和,并将TCP段转发到接收设备。接收到已认证的TCP段后,接收设备将扫描其认证元素列表,搜索其标识符与传入TCP选项的标识符匹配的认证元素。如果接收设备找到了这样的认证元素,则接收设备使用来自认证元素的密钥来计算安全部分。如果计算出的安全性部分与在传入TCP段中接收的安全性部分匹配,则接收设备将接受该段。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号