Font Size: a A A

Research And Implementation Of IKE Protocol In IPSec

Posted on:2007-07-15Degree:MasterType:Thesis
Country:ChinaCandidate:H S FanFull Text:PDF
GTID:2178360212458451Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
IPSec protocol will be the next network security standard, and Internet Key Exchange (IKE) protocol is one of the most important protocols among the IPSec protocol family. The correct implement of the Internet Key Exchange protocol relates to the security of IPSec protocol, even the security of VPN which is based on IPSec protocol.In this thesis, first of all, IKE protocol is analyzed in detail, including the contents of IKE, the format of the IKE message and the negotiating procedure. Then, some security issues on the Internet Key Exchang protocol are analyzed in detail,mainly,the problem of DoS is analyzed,also improved method is discussed.Then,the weakness in the main mode protocol with pre-shared key for authentication is examined—The protocol can only be used by peers with fixed IP address. A minor modification is made to support nomadic users.Finally, an implement scheme of IKE based on revised pre_shared_key is designed, the designing approach and function partition of such implementation are described,also the main data structures and flow charts are discussed. And,the system is tested by experiment.The result of experiment has proved that the revised protocol can support nomadic initiators.
Keywords/Search Tags:Key exchange, IKE protocol, IPSec, DoS, pre_shared_key
PDF Full Text Request
Related items