The invention discloses an
IPSec (
Internet Protocol Security) VPN (Virtual
Private Network) security gateway communication method fused with a
post quantum cryptography technology, which comprises the following steps of: S1, in a first-stage main mode of IKE (
Internet Key Exchange) key agreement, replacing a traditional single SM2
algorithm and a digital
certificate based on an SM2 cryptographic
algorithm with an SM2 and PQC mixed
algorithm and a mixed PQC digital
certificate; s2, the initiator and the responder respectively use the PQC
encryption key pair and the PQC signature key pair to carry out
key exchange and data signature, and simultaneously use the SM2
encryption key pair and the SM2 signature key pair to carry out
key exchange and data signature; s3, in the message 1, the initiator sends a security alliance load containing the attribute of the fused SM2 and PQC algorithm to the responder; s4, in the message 2, the responder feeds back a PQC series
hybrid certificate and an SA proposal; and S5, in the message 3 and the message 4, the initiator and the responder complete
key exchange and
verification. According to the invention, the security of the
IPSec VPN security gateway can be improved, and
quantum computing attacks can be resisted.