Supercharge Your Innovation With Domain-Expert AI Agents!

Encryption mode negotiation method and apparatus of multiple NAT traversing versions

An encryption mode and version technology, which is applied to secure communication devices and key distribution, can solve problems such as negotiation failure, different encryption mode values, and the responder's inability to understand the encryption mode normally.

Active Publication Date: 2017-09-22
北京椰子树信息技术有限公司
View PDF4 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This will cause the final encryption mode values ​​of the two to be different, so that the responder cannot understand the encryption mode of the initiator normally, resulting in negotiation failure

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Encryption mode negotiation method and apparatus of multiple NAT traversing versions
  • Encryption mode negotiation method and apparatus of multiple NAT traversing versions

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0035] The core of the present invention is to provide a multi-NAT traversal version encryption mode negotiation method and its device, which can make the encryption mode selected by the responder and the initiator the same as much as possible, and improve the negotiation success rate.

[0036] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is a part of embodiments of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0037] The present invention provides an encryption mod...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an encryption mode negotiation method and apparatus of multiple NAT traversing versions, applied to IP SecI KE. The method comprises the following steps: selecting a corresponding selection rule from a plurality of preset selection rules to set a responder, wherein the rules of the responder and an initiator to select the NAT traversing version are the same; in a first stage negotiation process, receiving multiple NAT traversing versions sent by the initiator by the responder; selecting an NAT traversing version by the responder according to its own set selection rule, and determining an encryption mode corresponding to the selected NAT traversing version; in a second stage negotiation process, receiving the encryption mode corresponding to the selected NAT traversing version sent by the initiator by the responder; and comparing the selected encryption mode with the encryption mode selected by the initiator, and using the encryption mode as the final negotiation result if the encryption modes are the same. By adoption of the encryption mode negotiation method and apparatus disclosed by the invention, the encryption modes selected by the responder and the initiators can be the same as much as possible, and thus the negotiation success rate is improved.

Description

technical field [0001] The invention relates to the technical field of key exchange protocol negotiation, in particular to a multi-NAT traversal version encryption mode negotiation method and device thereof. Background technique [0002] In IP Sec IKE (key exchange protocol), if the NAT traversal attribute is set and the NAT traversal version is upgraded, the negotiation packet sent by the initiator will include multiple Vendor id payloads, each carrying a NAT traversal version. At this time, the responder will select the highest version (for example, the encryption mode is 3) from the received multiple NAT traversal versions, wherein each NAT traversal version corresponds to an encryption mode. [0003] In the second phase of negotiation (quick mode), the initiator will select the encryption mode corresponding to the last NAT traversal version (for example, 61443) according to the order in which it sends the NAT traversal version, and send it to the responder. This will c...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/08H04L29/12
CPCH04L9/0838H04L9/0861H04L61/256
Inventor 蒋俏峰
Owner 北京椰子树信息技术有限公司
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More