摘要
针对空间网络的特点及空间网络对密钥交换的特殊需求,提出一种适用于空间网络的密钥交换协议。该协议以Internet密钥交换协议为基础,通过增加DH循环队列、提高Cookie计算强度的方法增强其抗拒绝服务攻击的能力,给出抵御中间人攻击、选项攻击及反射攻击的修正方法。理论分析表明,该协议具有更高的安全性和较少的交换次数,更适用于空间网络通信环境。
Aiming at the characteristics of space networks and their special requirements for key exchange, this paper proposes a key exchange protocol for space networks. It is based on the Internet Key Exchange(IKE) protocol, and robust to Denial of Service(DoS) attacks by adding circular DH queue and increasing the calculate intensity of Cookie. Some improved methods are presented in defending man-in-middle attack, option attack and reflect attack. Theoretical analysis shows that the protocol has more security, less exchange messages and it adapts to the space networks.
出处
《计算机工程》
CAS
CSCD
北大核心
2009年第18期113-115,共3页
Computer Engineering
基金
国家"863"计划基金资助项目(2006AA701416
2007AA701309)