DocumentCode :
2664589
Title :
An Efficient and Secured Internet Key Exchange Protocol Design
Author :
Su, Ming-Yang ; Chang, Jia-Feng
Author_Institution :
Dept. of Comput. Sci. & Inf. Eng., Ming Chuan Univ., Taoyuan
fYear :
2007
fDate :
14-17 May 2007
Firstpage :
184
Lastpage :
192
Abstract :
IPSec provides encryption and authentication on data packets protecting them from being eavesdropped or falsified. Prior to performing IPSec functions, shared session keys must be safely and secretly established between the two communication parties, usually two security gateways. Internet Key Exchange (IKE) protocol is the most common mechanism for two security gateways to exchange key materials. However, the original IKE is too flexible, complex, and vulnerable to DoS attack. Several enhanced IKE versions have been proposed to replace the original one. In this paper, we propose a new IKE version and analyze it extensively. The latest and most related version proposed in 2004 is used to compare with our version. Simulation results have shown that our protocol is more efficient and DoS resistant than the other, in addition to possessing more security merits.
Keywords :
IP networks; cryptographic protocols; internetworking; public key cryptography; telecommunication security; DoS attack; IP security; denial-of-service; eavesdrop; internet key exchange protocol design; security gateways; Access protocols; Authentication; Computer crime; Computer science; Data engineering; Data security; Design engineering; Information security; Internet; Protection;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Communication Networks and Services Research, 2007. CNSR '07. Fifth Annual Conference on
Conference_Location :
Frederlcton, NB
Print_ISBN :
0-7695-2835-X
Type :
conf
DOI :
10.1109/CNSR.2007.13
Filename :
4215512
Link To Document :
بازگشت