摘要
互联网密钥交换(Internet Key Exchange,IKE)协商端口为用户数据报协议(User Datagram Protocol,UDP)的500端口和4500端口,攻击者根据端口很容易发现IKE的协商包,并可根据截获的协商包,对协商过程进行破坏和攻击。因此,文章提出一种隐藏IKE协商端口的方法,可以防止攻击者轻易发现并截获IKE协商包,从而保护系统安全。
Internet Key Exchange(IKE) negotiation ports are ports 500 and 4500 of the User Datagram Protocol(UDP). Attackers can easily find IKE negotiation packets based on the ports, and can damage and attack the negotiation process based on the intercepted negotiation packets. This paper proposes a method to hide IKE negotiation port, which can prevent attackers from easily finding and intercepting IKE negotiation packets, and protect system security.
作者
曾鹤
王宇
ZENG He;WANG Yu(The 30th Research Institute of China Electronics Technology Group Corporation,Chengdu Sichuan 610041,China)
出处
《信息与电脑》
2022年第21期200-202,共3页
Information & Computer