摘要
随着接入到互联网中的嵌入式设备越来越普遍,嵌入式系统的网络安全问题也越来越引起人们的关注。文章针对嵌入式系统的网络安全需求和有限计算能力的特点,提出了一个基于有限域上离散对数的身份认证和密钥协商算法。分析表明该算法能有效抵御网络中的消息重放攻击和中间人攻击。该算法在基于ucLinux系统上的嵌入式IPSec框架中实现,具有较低的系统资源开销和较高的运行效率。
With more and more popularity of embedded device connecting the internet,the network security of the embedded system is more concerned by the people.According to the security requirement and limited compute ability,we propose a novel authentication and key agreement algorithm.The analysis demonstrates the cryptography can resist the message replay attacks and man-in-the-middle attack.The algorithm implemented in the embedded IPSec of ucLinux is of lower overhead and high efficiency.
出处
《贵州大学学报(自然科学版)》
2010年第2期74-77,95,共5页
Journal of Guizhou University:Natural Sciences
基金
国家自然科学基金项目(60473054)