作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (18): 113-115. doi: 10.3969/j.issn.1000-3428.2009.18.040

• 安全技术 • 上一篇    下一篇

改进的空间网络密钥交换协议

吴 举,杜学绘,钱雁斌,曹利峰   

  1. (解放军信息工程大学电子技术学院,郑州 450004)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-09-20 发布日期:2009-09-20

Improved Key Exchange Protocol for Space Networks

WU Ju, DU Xue-hui, QIAN Yan-bin, CAO Li-feng   

  1. (Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450004)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-09-20 Published:2009-09-20

摘要: 针对空间网络的特点及空间网络对密钥交换的特殊需求,提出一种适用于空间网络的密钥交换协议。该协议以Internet密钥交换协议为基础,通过增加DH循环队列、提高Cookie计算强度的方法增强其抗拒绝服务攻击的能力,给出抵御中间人攻击、选项攻击及反射攻击的修正方法。理论分析表明,该协议具有更高的安全性和较少的交换次数,更适用于空间网络通信环境。

关键词: 空间网络, 密钥交换协议, Internet密钥交换协议

Abstract: Aiming at the characteristics of space networks and their special requirements for key exchange, this paper proposes a key exchange protocol for space networks. It is based on the Internet Key Exchange(IKE) protocol, and robust to Denial of Service(DoS) attacks by adding circular DH queue and increasing the calculate intensity of Cookie. Some improved methods are presented in defending man-in-middle attack, option attack and reflect attack. Theoretical analysis shows that the protocol has more security, less exchange messages and it adapts to the space networks.

Key words: space networks, key exchange protocol, Internet Key Exchange(IKE) protocol

中图分类号: