An isakmp-based extended authentication method and system

An extended authentication and responder technology, applied in the transmission system and key distribution, can solve the problem that the routing device is not pre-configured with the trust relationship, the selection range of the authentication mechanism is limited, and the configuration is complicated.
CN102904861BActive Publication Date: 2017-10-03射阳县射阳港对虾养殖二公司

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
射阳县射阳港对虾养殖二公司
Publication Date
2017-10-03

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The invention discloses an extended authentication method based on the Internet Security Alliance and Key Management Protocol (ISAKMP), which includes: when the first routing message needs to be sent, the initiator and the responder negotiate and use the Extended Authentication Protocol (EAP) for authentication; After the EAP authentication process is successful, the initiator and the responder calculate the keyed message authentication code (HMAC) value in the AUTH load according to the master session key (MSK) or shared key generated by the EAP process, and Send the AUTH payload to the other party and complete the authentication in ISAKMP. The invention also discloses an extended authentication system based on ISAKMP. By adopting the method and the system of the invention, the authentication method can be flexibly selected in the ISAKMP, and the development of modern authentication technology can be followed up.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention relates to key management and authentication technology of routing equipment in a communication network, in particular to an extended authentication method and system based on Internet Security Association and Key Management Protocol (ISAKMP, Internet Security Association and Key Management Protocol). Background technique

[0002] The Internet (Internet) has become an indispensable infrastructure in modern society and plays a very important role in politics, economy and people's livelihood. Once the Internet is damaged or attacked, it will bring serious harm and influence, so network security has attracted worldwide attention. The core device in the Internet is the routing device. Ensuring the security of the routing device is an important aspect of network security, and in the security mechanism of the routing device (including the running routing protocol), key management and authentication are very important aspects. Here, the Interne...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More