作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (05): 146-148. doi: 10.3969/j.issn.1000-3428.2007.05.051

• 安全技术 • 上一篇    下一篇

RADIUS服务器安全性分析及其改进

张 琪1,喻占武2,李 锐2   

  1. (1. 武汉大学电子信息学院,武汉 430079;2.武汉大学测绘遥感信息工程国家重点实验室,武汉 430079)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-03-05 发布日期:2007-03-05

Security Analysis and Improvement of RADIUS Server

ZHANG Qi1, YU Zhanwu2, LI Rui2   

  1. (1. School of Electronic & Information Engineering, Wuhan University, Wuhan 430079; 2. State Key Laboratory of Information Engineering in Surveying, Mapping and Remote Sensing, Wuhan University, Wuhan 430079)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-03-05 Published:2007-03-05

摘要: 对RADIUS协议所采用的通过共享密钥、认证码等实现的安全措施进行分析,指出其仍然存在的多方面的安全漏洞。在实现中针对RADIUS协议的安全漏洞采取可能的改进措施,在一定程度上弥补了RADIUS协议安全性上的不足,使实现的RADIUS服务器端更好地满足了实际应用的需要。

关键词: RADIUS, 共享密钥, 认证码, 安全性

Abstract: The paper analyses the security control and security measure carried out by shared secret and authenticator, which is used in RADIUS protocol. It indicates that the RADIUS protocol still exist several security leaks. It introduces the improvement solutions aiming at the security leaks in carrying out of RADIUS server. It makes up the security shortcomings of RADIUS protocol on a certain extent and makes the RADIUS server meet the requirement of application better.

Key words: RADIUS, Shared secret, Authenticator, Security