首页 | 本学科首页   官方微博 | 高级检索  
     

基于PKI/OCSP的IKEv2协议设计
引用本文:王明,杜春燕,陆建德.基于PKI/OCSP的IKEv2协议设计[J].武汉理工大学学报,2010(3).
作者姓名:王明  杜春燕  陆建德
作者单位:宁波大红鹰学院;江苏省计算机信息处理技术重点实验室;
基金项目:江苏省自然科学基金(BK2004039)
摘    要:IKE协议是IPSec协议簇的重要组成部分,是IPSec VPN安全传输的先决条件和保证。新版IKE即IKEv2自提出以来就备受业界关注。在研究IKEv2协议的基础上,将公钥基础设施PKI体系引入其中,并针对IKEv2中数据通信的特点,将在线证书状态协议OCSP与IKEv2协议结合起来,设计了一个基于PKI/OCSP的改进型IKEv2协议,从而提高了IPsec VPN系统的运行效率和安全性。

关 键 词:IKEv2  PKI  OCSP  数字证书  

Design of IKEv2 Protocol Based on PKI/OCSP
WANG Ming,DU Chun-yan,LU Jian-de.Design of IKEv2 Protocol Based on PKI/OCSP[J].Journal of Wuhan University of Technology,2010(3).
Authors:WANG Ming  DU Chun-yan  LU Jian-de
Affiliation:WANG Ming1,DU Chun-yan1,LU Jian-de2(1.Ningbo Dahongying University,Ningbo 315175,China,2.Jiangsu Province Key Lab of Computer Information Processing Technology,Suzhou 215006,China)
Abstract:Internet Key Exchange(IKE) is one of the important protocols in IPSec protocol suite,which is the prerequisite and guarantee for secure communication with IPSec VPN.The new version of IKE or IKEv2 has been discussed and concerned by the industry since its introduction.This paper has researched on IKEv2 protocol,and proposed to introduce the public key infrastructure and to combine the techniques of OCSP in cognizance of IKEv2 data communication,improving the efficiency and security of IPSec VPN gateway.
Keywords:IKEv2  PKI  OCSP  digital certificate  
本文献已被 CNKI 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号