Multi-stage security supporting mobile IPSec transmission authentication method
An authentication method and security technology, applied in the field of network security, can solve the problems of not being able to provide MN registration function, not suitable for mobile IPv6 network security, difficult to apply, etc.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0063] refer to figure 2, the mobile IPSec transmission authentication method supporting multi-level security when the communication peer CN provided by the present invention is a single security level node, including:
[0064] In step 1, the MN sends an IKE / SA initialization message to register with the CN.
[0065] When the MN wants to communicate with the CN, it obtains the CN's care-of address from the CN's home agent, selects a random number Ni, and sends an IKE / SA initialization message {CERT MN , CoA MN , Ni, SAi1, KEi}Sig MN .
[0066] where {X}Sig MN means X‖Sig MN (X), that is, the message X and the MN's signature on X.
[0067] SAi1, an optional IKE / SA algorithm proposal, indicates a list of cryptographic algorithms supported by the initiator MN.
[0068] KEi, Diffie-Hellman key exchange parameters of the initiator MN.
[0069] CERTs MN Indicates the certificate of the MN. In the present invention, the certificate of the entity adopts the format of the X....
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 


