摘要
介绍L2TP协议在现阶段所存在的安全隐患,对eL2TP协议的原理进行描述,讨论控制消息和PPP-PDU的具体封装,对现有的L2TP源代码进行分析,并描述内部各模块之间的关系。在该结构上加入AD域模块、隧道认证模块、数据加密模块、Linux下伪终端的应用,从而建立完整的el2TP体系结构。并基于该el2TP协议实现VPDN,同时进行抓包分析和验证。
This thesis introduced the security risks that exist at the present of the L2TP and described the principles of the eL2TP protocol.The specific encapsulation of the control message and the PPP-PDU was discussed.It was analysied the existing source code of the L2TP and described the relationship between the various modules.In this structure,AD module,tunnel authentication module,data encryption module and the application of pseudo-terminal under the Linux was added,there by established the complete el2TP architecture and implemented the VPDN based on this protocol.At last,for test and verification,some packets was captured and analyzed.
出处
《铁路计算机应用》
2010年第12期50-53,共4页
Railway Computer Application
基金
国家自然科学基金-联合资助基金项目(UD970122)
关键词
增强型第二层隧道协议
虚拟专用拨号网
MS-CHAPV2
MPPE
enhance of two layer tunnel protocol
virtual private dial network
microsoft challenge handshake authentication protocol
microsoft point to point encryption