Method for preventing forgery of source address based on signature authentication inside IPv6 sub network |
Title: |
Method for preventing forgery of source address based on signature authentication inside IPv6 sub network |
|
Application Number: |
200610113192 |
Application Date: |
2006/09/19 |
Announcement Date: |
2007/02/28 |
Pub. Date: |
|
Publication Number: |
1921488 |
Announcement Number: |
|
Grant Date: |
|
Granted Pub. Date: |
|
ApplicationType: |
Invention |
State/Country: |
11[China|beijing] |
IPC: |
H04L 29/06, H04L 12/56, H04L 9/32 |
Applicant(s): |
Tsinghua University |
Inventor(s): |
Bi Jun, Wu Jianping, Jie Lizhong |
Key Words: |
IPv6 sub network, signature authentication, preventing, forgery, source address |
Abstract: |
The invention relates to a method for avoiding false source address based on sign identification in IPv6 sub network. Wherein, the invention is characterized in that: the user host sends one report to external network, which carries one sign formed by application information summary function MD5 or SHA1 as conversation key, source address, target address, and report serial number; the safety identification gateway at the inlet of edge route of IPv6 sub network checks the report sign, to confirm its source address is true; at the same time, the gateway judges if its serial number is increased in the life of conversation key to judge if it is replay report. The invention can effectively avoid false source address, while it supports increase setting. |
Claim: |
|
Priority: |
|
PCT: |
|
LegalStatus: |
|