首页 | 本学科首页   官方微博 | 高级检索  
     

JFK协议的研究与分析
引用本文:冯雁,李阳,徐梓杰,黄达.JFK协议的研究与分析[J].北京电子科技学院学报,2012,20(2):15-20.
作者姓名:冯雁  李阳  徐梓杰  黄达
作者单位:北京电子科技学院信息安全系,北京,100070;北京电子科技学院信息安全系,北京,100070;北京电子科技学院信息安全系,北京,100070;北京电子科技学院信息安全系,北京,100070
基金项目:北京市支持中央在京高校共建项目大学生科研计划--党政机关网络安全系统研究与设计
摘    要:针对密钥交换协议IKE报文传输往返次数太多、对拒绝服务攻击防范脆弱以及协议规范和功能机制太复杂等缺陷,目前出现了两个替代协议——IKEv2以及JFK(快速密钥交换协议)。由于相对于IKE和IKEv2,JFK更加简单和高效,主要对JFK协议进行研究和分析。介绍了JFK的协议内容,分析了JFK协议在PFS、身份保护、防DoS攻击、防重放攻击以及防中间人攻击等方面的安全性,并从协议复杂程度和效率两方面对JFK协议的性能进行了探讨,最后还指出了JFK协议存在的问题。

关 键 词:IKE  JFK  Diffie—Hellman交换  PFS

Research and Analysis of JFK Protocol
Feng Yan Li Yang Xu Zijie Huang Da.Research and Analysis of JFK Protocol[J].Journal of Beijing Electronic Science & Technology Institute,2012,20(2):15-20.
Authors:Feng Yan Li Yang Xu Zijie Huang Da
Affiliation:Feng Yan Li Yang Xu Zijie Huang Da Electronic and Science Technology Institute, Bejing ]00070
Abstract:Internet Key Exchange (IKE) protocol exists a series of defects, such as too many times of inter- active messages during the key exchange period, vulnerability against DoS attacks and complicated protocol specification and functional mechanisms. Two alternatives, IKEv2 and Just Fast Keying(JFK) protocol, are put forward. Compared with IKE and IKEv2, JFK is simpler and more efficient. This paper focuses on the research and analysis of JFK protocol. It states the content of JFK, analyzes the security aspects of JFK on PFS, identity protection, anti -DoS attacks, anti -replay attacks and anti -middle attacks, and discusses the performance issues based on the complexity and efficiency of JFK. Finally, issues of JFK protocol still need to be studied are proposed.
Keywords:IKE  JFK  Diffie - Hellman exchange  PFS
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号