计算机工程与应用 ›› 2012, Vol. 48 ›› Issue (2): 69-75.

• 网络、通信、安全 • 上一篇    下一篇

MIPv6快速层次化切换的高效认证机制研究

徐邢启1,潘 进1,郭 超2,陈志广1   

  1. 1.西安通信学院,西安 710106
    2.中国人民解放军 61741部队
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2012-01-11 发布日期:2012-01-11

Research on efficient authentication mechanism in MIPv6 fast hierarchical handoff

XU Xingqi1, PAN Jin1, GUO Chao2, CHEN Zhiguang1   

  1. 1.Xi’an Communication Institute, Xi’an 710106, China
    2.Unit of 61741 PLA
  • Received:1900-01-01 Revised:1900-01-01 Online:2012-01-11 Published:2012-01-11

摘要: 针对移动IPv6(MIPv6)层次化切换中各节点之间的身份认证问题,提出一种新的基于MIPv6快速层次化切换的认证机制。利用改进的IBS签名方案和层次化的网络结构,从域间切换和域内切换两个角度分别论述了移动节点和新访问域之间的双向认证和切换性能的问题。分析结果表明基于MIPv6快速层次化切换的认证机制效率高,安全性好,仅需来回一次消息交互就能实现切换与接入认证和绑定更新的同步。

关键词: 移动IPv6, 快速层次化切换, 密钥生成中心, 认证, 签名, 注册

Abstract: In order to solve the authentication problem among nodes in the hierarchical MIPv6 handoff, a new fast hierarchical handoff-based authentication mechanism is proposed in MIPv6. By making use of improved identity-based signature scheme and the hierarchical structure of network, the two-way authentication and switching performance between mobile node and the new domain are expounded respectively from two perspectives of intra-domain and inter-domain handoff. The results of analysis show that the proposed fast hierarchical handoff-based authentication mechanism in MIPv6 is highly efficient and safety, and only one message interaction back and forth can achieve the synchronization among handoff, access authentication and binding update.

Key words: mobile IPv6, fast hierarchical handoff, key generation center, authentication, signature, binding update