首页 / 资料库 / 文献详情

An Intelligent Internet Key Exchange Protocol Resistant to Denial-of-Service Attacks

Ming‐Yang Su

2010網際網路技術學刊Computer Science被引 1

出版方页面 →

摘要

IPsec provides encryption and authentication for data packets, and protects them from eavesdropping and falsification. Prior to performing IPsec functions, authentication must be mutually assured between the two parties in communication, usually two security gateways, and shared session keys between them must be safely generated. Internet Key Exchange (IKE) protocol is the most common mechanism for two security gateways to negotiate. Haddad et al. proposed a simplified DoS-resistant protocol for such negotiation. Besides, the new version of IKE, named IKEv2 as defined in RFC 4306, can also achieve limited DoS prevention. This paper proposes a simplified, but intelligent design for an internet key exchange protocol, which has greater DoS-resistant than the protocol by Haddad et al. or IKEv2, while maintaining important security properties.

引用本文(GB/T 7714)

Ming‐Yang Su. An Intelligent Internet Key Exchange Protocol Resistant to Denial-of-Service Attacks[J]. 網際網路技術學刊, 2010.

引文网络

参考文献与被引分析加载中…

DOI:https://doi.org/10.6138/jit.2010.11.5.11

本站仅收录题录与摘要供学习参考,全文版权归属出版方;如有侵权请联系我们删除。