作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (6): 140-142. doi: 10.3969/j.issn.1000-3428.2008.06.051

• 安全技术 • 上一篇    下一篇

双主体认证协议抵御DoS攻击的安全方案

陈建辉1,2,徐 涛1   

  1. (1. 南京航空航天大学信息科学与技术学院,南京 210016;2. 郑州航空工业管理学院计算机科学与应用系,郑州 450015)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-03-20 发布日期:2008-03-20

Security Solution for Protecting Two-party Authentication Protocols Against Denial of Service Attack

CHEN Jian-hui 1,2, XU Tao 1   

  1. (1. College of Information Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing 210016; 2. Department of Computer Science & Application, Zhengzhou Institute of Aeronautical Industry Management, Zhengzhou 450015)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-03-20 Published:2008-03-20

摘要: 认证协议存在的一定的拒绝服务(DoS)攻击隐患。该文在cookie机制和工作量证明方法思想的基础上,采用弱认证和强认证相结合的方法,提出了双主体认证协议抵御DoS攻击的安全方案,给出了方案的实现细节和部分实验数据,分析了该方案的安全性。应用该方案对Lowe的NSPK协议进行改进,并分析了改进后协议的性能。

关键词: 认证协议, 拒绝服务, 安全协议

Abstract: Authentication protocol has a DoS attack weakness. Based on the idea of cookie solution and proof of work, this paper uses weak authentication and strong authentication, presents the security solution for protecting two-party authentication protocols against DoS attack, gives the detail and some experimental data, analyses the solution’s security. It improves the Lowe’s NSPK protocol using the solution, and analyses the improved protocol’s performance.

Key words: authentication protocol, Denial of Service(DoS), security protocol

中图分类号: