Font Size: a A A

Next-generation Network Ipsec Research And Practice,

Posted on:2007-03-16Degree:MasterType:Thesis
Country:ChinaCandidate:W TaoFull Text:PDF
GTID:2208360185491302Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
First The article introduced the next generation network development condition and its security carries on the introduction. Then, we has discussed the state of security on Internet, analyzed the factors caused frangibility of Internet, and intrudced some means used to provide security services for Internet. After that, this dissertation focuses on deep research on secure network access as follows. The IPv6 security component IPSec is analyzed in detail in the structure, function, work mode and implementation of IPSec in IPv6. The ability of keeping IP packet's integrity, secrecy, authentication, data origination, anti-relay is discussed The relationship of IPSec component Authentication Header(AH) Key, Encapsulating Security Payload (ESP) and IKE(Internet Key Exchange) is also talked about. This discussion of IPSec makes the impression that IPSec make IP layer security enough. Then introduced How FreeBSD implement the IPSec. In detail introduced how IP Sec module ESP and AH do implement as well as SPD and the SADB function way. Carrings on the IPSec experiment between two computers.To Establish the connection after two too main engines, and carry on the test by Test tcp, it will use IPSec in the transmission.The comparison between times and speed will help the analysis to the experimental result. After studing and experiment the conclusion shows deficiency in the summarize, explanation research goal and harvest. Future research will be carry out in IPSec. e.g compression, IPSec in multicast, the key restores, L2TP ,Mobile IP,Layered IPSec and so on. It is clear that the IPSec research is the extremely vital significance to the NGN security.
Keywords/Search Tags:NGN, IPv6, IPSec, Secure Network, AH, ESP, IKE
PDF Full Text Request
Related items