Title :
Research on the Model of IPSec over WLAN and Improving of Key Exchange
Author :
Chen, Zhuo ; Chen, Xiaowei ; Zhang, Zhengwen
Author_Institution :
Sch. of Comput., Hubei Univ. of Technol., Wuhan
Abstract :
Contrast with the current WLAN (wireless local area network) security mechanism worked in data link layer. IPSec over WLAN worked in IP layer has his superiorities. But as a security mode originally used in wired network, IPSec uses IKE (Internet key exchange protocol) as default that need a large number of computation is not fit for mobile devices of WLAN. Besides, IPSec protocol does not fit mobile IP perfectly. Aiming at the limitation that IPSec applies in WLAN, the paper renames the architecture of IPSec over WLAN, and processes IKEv2 over WLAN adopting EAP (expansion authentication protocol) to reduce the computation cost of data link layer. At last it puts forward key exchange protocol on the cross-security domain of mobile IP.
Keywords :
IP networks; Internet; cryptographic protocols; message authentication; telecommunication security; wireless LAN; IKEv2; IPSec; Internet key exchange protocol; WLAN; cross-security domain; expansion authentication protocol; mobile IP; security mode; wireless local area network; Authentication; Communication system security; Computer networks; Computer science; Data security; Privacy; Protocols; Roaming; Virtual private networks; Wireless LAN;
Conference_Titel :
Wireless Communications, Networking and Mobile Computing, 2008. WiCOM '08. 4th International Conference on
Conference_Location :
Dalian
Print_ISBN :
978-1-4244-2107-7
Electronic_ISBN :
978-1-4244-2108-4
DOI :
10.1109/WiCom.2008.1116