1) IKE
互联网密钥交换协议
1.
This paper first described the architecture of the IPSec specification, including AH, ESP, IKE, DOI, policy etc, introduced the application of IPSec, focused on the tunnelling technique, and show a reality framework of IPSec tunnel mode.
介绍了IPSec技术的结构框架并详细讨论各个组成部分(包括认证协议头,安全加载封装安全保护机制,互联网密钥交换协议,解释域,策略等),讨论了IPSec的实现方式,重点指出了隧道实现方式,并提出了IPSec隧道模式的一个实现框架。
3) IKE
因特网密钥交换协议
1.
Analysis and Amendment of IKE Protocol;
因特网密钥交换协议IKE的分析及改进
2.
The Internet Key Exchange (IKE) protocol is a hybrid protocol made of Internet Security Association and Key Management protocol, OAKLEY protocol and SKEME protocol.
分析了因特网密钥交换协议 (IKE)易于遭受的两种攻击 :针对 IKE主模式协议的变换载荷攻击和针对IKE主模式中预共享秘密认证协议的反射攻击 。
3.
This paper presents some rationale and key technology relevant to the implementation of VPN based on IPSec,briefly describes the main mode exchange of IKE with pre-shared key authentication method and,according to the flaw of IKE,suggests a solution to the improvement of the protocol,which can protect against man-in-the-middle attack and repeat attack.
描述了基于IPSec的VPN的关键技术,分析了因特网密钥交换协议IKE主模式交换中的预共享密钥验证方法,针对协议的不足提出了改进算法,以有效抵御中间人攻击和重发攻击。
4) key agreement
密钥交换协议
1.
The 3GPP(Third Generation Partnership Project) authentication and key agreement(AKA) was formally analyzed with the strand space model and authentication tests.
基于串空间模型理论及认证测试方法形式化分析了第3代伙伴计划(3GPP)认证密钥交换协议,指出了该协议应用于不安全的信道时存在保密性和认证正确性的缺陷,同时给出了对该协议的2个攻击方法。
5) key exchange protocol
密钥交换协议
1.
Identity-based tripartite key exchange protocol from Weil pairing;
利用Weil配对的基于身份的三方密钥交换协议
2.
This paper gives a formal analysis on the authenticated key exchange protocol based on password using the theory of the strand space model.
在串空间理论模型引入了描述DH问题的方法以及分析猜测攻击的攻击者能力 ,对基于口令认证的密钥交换协议的安全性进行了形式化分析。
3.
SOM key exchange protocol and QV key exchange protocol were based on an elliptic curve En(a,b) over the ring Z n with a point G of order Mn=lcm{# Ep(a,b),# Eq(a,b)},where n=pq and p,q are odd primes.
设n =pq,p,q为奇素数 ,环Zn 上的椭圆曲线En(a ,b)的SOM密钥交换协议与QV密钥交换协议均选取En(a ,b)上的阶为Mn=lcm{ #Ep(a ,b) ,#Eq(a ,b) }的点G作为公钥 (称G为基点 ) ,并且限定其对应的Ep(a ,b)和Eq(a ,b)均为循环群 ,这就限制了这两个协议只能选择一类特殊的椭圆曲线En(a ,b)构作密钥交换协议 。
6) Internet key exchange protocols
Internet密钥交换协议
1.
IKE (Internet key exchange, RFC2409) describes a suite of Internet key exchange protocols for establishing security associations and obtaining authenticated keying material.
IKE(Internet key exchange,RFC2409)提供了一组Internet密钥交换协议,目的是在IPSec(IP security)通信双方之间建立安全联盟和经过认证的密钥材料。
补充资料:国际互联网
见“因特网”。
说明:补充资料仅用于学习参考,请勿用于其它任何用途。
参考词条