Font Size: a A A

Research And Analysis On Protocol Of IPSec

Posted on:2005-11-06Degree:MasterType:Thesis
Country:ChinaCandidate:X T KuangFull Text:PDF
GTID:2168360122995130Subject:Computational Mathematics
Abstract/Summary:
IPSec is a network security protocol. VPN is a typical use of this protocol. IPSec is very complex, it is based on the cryptography and the technique of PKI ( CA). VPN usually use a typical CA to manage the certificates of the VPN. But with the scale of a VPN system management expanding along with the management requirements changing, the typical CA can' t well satisfy the customer's needs. And for this, it is necessary to extend the typical CA. At the same time, the key exchange protocol ( IKE) is the core of IPSec security. The IKE agreement also became the hotspot to study IPSec.This paper starts with the concept of network security, and then introduces the VPN technique in brief. It puts great emphasis on the analysis and realization of a extended CA model that the author puts forward. The author describes the model in detail, points out the core mechanism of the model, analyzes the advantage of the model, finally the author realized this model, put it into use in engineering . Then the author continueshis paper with the IKE protocol--one of a foundation of IPSec .The author starts with the introduction of IKE's exchange modes, and puts great emphasis on IKE security analysis through usedarithom and the length of the keys and elicits some new result, then brings up a model for realization, and realizes it under the windows 2000 systems . At last, the author make a summarization of the two realizations according the feedback message of their application .This paper's content doesn't include all of the knowledge of IPSec. But its two important foundation: CA and IKE protocol.
Keywords/Search Tags:CA, Network Security, IPSec Protocol, VPN, PKI, IKE Protocol
Related items