Research on the Security of IKE Protocol and Shared Key Enhancement
The auto key exchange process of IPSec which is used to establish SA is introduced by this paper. After the in-depth analysis of IKE,this study found that due to the deficiencies of the pre-shared key authentication method there are many weaknesses in the key exchange process. And this paper proposed an enhanced protocol based on the ISAKMP framework to avoid the harm to the system caused by crack of the pre-shared key,which may not only reduce the cost of system,but also resist the MITM attack,dictionary attack and other typical attacks effectively. In the enhanced protocol,nobody can attack the key exchange process easily,because such computation is as complex as the computation of the discrete logarithm problem.
IKE IPSec Security pre-shared key
Longjun Zhang Tianqing Mo Jinsen Han
Dept. of Communication Engineering,Engineering Univ. of APF,Xian,China
国际会议
西安
英文
1850-1853
2011-12-23(万方平台首次上网日期,不代表论文的发表时间)