基于移动IPv6的IPSec安全体系

On the Security Mechanism in Mobile IPv6

  • 摘要: 对IPSec协议族进行研究,分析了安全联盟、身份认证报头、封装安全负载和因特网密钥交换等协议的结构及其关键技术,并在此基础上提出了一种IPSec的实现方案,可以有效地保障移动IPv6中数据传输的安全。在具体的实施过程中,可选用传输模式和隧道模式两种实现模式。传输模式只能用于发送方和接收方的系统都应用了IPSec的情况。在大多数情况下,采用隧道模式不需要对所用的系统进行任何修改。

     

    Abstract: The paper is dealing with the IPSec Protocols and analysing the structure and key technology of security association, authentication header, encapsulating security payload and Internet key exchange. On the basis of the discussion, it presents the practical design of IPSec, which can effectively ensure the security of data transmission in IPv6. In practice, there are two models can be selected, transmission model and tunnel model, transmission model can only be used on condition that IPSec is applied to the systems of the sender and the receiver. Therefore, in most cases, tunnel model is used because it is not necessary to make any change to the user's system.

     

/

返回文章
返回