期刊文献+

JFK协议的分析与改进 被引量:3

Analysis and improvement of JFK protocol
下载PDF
导出
摘要 JFK(just fast keying)协议是一种新型的Internet密钥交换协议,具有高效、安全和较好的防DoS(denial of services)攻击的特点。但是JFK协议也有自身的缺陷,比如没有实现PFS(perfect forward secrecy)。对JFK协议进行了详细的分析,通过增加循环DH队列、改变消息的内容和改进消息处理方式的方法对JFK协议进行了改进,改进后的JFK协议在不牺牲效率的情况下实现了PFS,并且具有更好的防DoS攻击和重放攻击的能力。 JFK protocol is a new type of Internet key exchange protocol, it is efficient, secure and DoS-resistant. But JFK protocol has its own defectiveness, for example, JFK compromises on PFS. JFK protocol is analyzed, the JFK protocol is improved via adding circular DH queue, changing messages' content and improving the method of managing messages. After improvement, JFK protocol achieve PFS without losing efficiency, and has better capability in defense DoS attack and replay attack.
作者 林鹏 张玉芳
出处 《计算机工程与设计》 CSCD 北大核心 2006年第13期2446-2448,2475,共4页 Computer Engineering and Design
关键词 快速密钥交换 PFS VPN 重放攻击 DOS攻击 just fastkeying PFS VPN replay attack DoS attack
  • 相关文献

参考文献6

  • 1Kent S,Atkinson R.Security architecture for the intemet protocol (IPSec)[Z].RFC 2401,IETF,1998. 被引量:1
  • 2Harkins D,Carrel D.The internet key exchange protocol (ike)[Z].RFC 2409,IETF,1998. 被引量:1
  • 3Harkins D,Kaufman C,Kent S.Proposal for the ikev2 protocol[Z].Internet Draft (draft-ietf-ipsec-ikev2-14.txt),IETF,2004. 被引量:1
  • 4Aiello W,Bellovin S,Blaze M.Efficient,dos-resistant,secure key exchange for internet protocols[C].Proceedings of the 9th ACM Conference on Computer and Communication security,ACM,2002.48 -58. 被引量:1
  • 5Karn P,Simpson W.Photuris:Session key management protocol[Z].RFC2522,IETF,1999. 被引量:1
  • 6Mian A S,Masood A.Arcanum:A secure and efficient key exchange protocol for the internet[A].Proceedings of the International Conference on Computers and Communications[C].IEEE Computer Society Press,2004. 被引量:1

同被引文献12

  • 1常丽娟,沈苏彬.密钥交换协议JFK的分析与研究[J].南京邮电大学学报(自然科学版),2006,26(1):18-24. 被引量:3
  • 2李力,张中科.快速密钥交换协议的分析与实现[J].南昌大学学报(理科版),2007,31(2):197-200. 被引量:2
  • 3C.Kaufman et al.Code-preserving Simplifications and Improvements to IKE.Internet Draft[J].Internet Engineering Task Force,July 2001.Work in progress. 被引量:1
  • 4Aiello W Bellovin S,Blaze M.Eficient,Dos-resistant,Secure Key Exchange for Internet Protocols[C].Proceedings of the 9th ACM Conference On Computer and Communication security,ACM,2002.48-58. 被引量:1
  • 5Mart'in Abadi,Bruno Blanchet,and C'edric Fournet,Just Fast Keying in the Pi Calculus[C].The 13th European Symposium on Programming,LNCS 2986,Springer-Verlag,2004.340-354. 被引量:1
  • 6WILLIAM A,BELLOVIN S M,MATT B.Just Fast Keying:Key Agreement In A Hostile Internet[J].ACM on Transactions Information and System Security,2004,7(2):1-30. 被引量:1
  • 7RFC 2401 Security Architecture for the Internet Protocol[ S ]. Internet Engineering Task Force, 1998.11. 被引量:1
  • 8RFC 2409 The Internet Key Exchange [ S ]. Internet Engineering Task Force, 1998.11. 被引量:1
  • 9RFC 4306 Internet Key Exchange (IKEv2) Protocol[ S]. Internet Engineering Task Force, 2005.12. 被引量:1
  • 10William Aiello, Steven M. Bellovin, Matt Blaze and so on. Just Fast Keying: Key Agreement In A Hostile Internet [ J]. ACM Transactions on Information and System Security ,2004,7 (2) : 1 -30. 被引量:1

引证文献3

二级引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部