IP层保密通讯技术研究及设计实现  

Study and realization of secure communication in IP layer

在线阅读下载全文

作  者:张向民[1] 陈璟[1] 潘雪增[1] 平玲娣[1] 

机构地区:[1]浙江大学计算机科学与工程学系,浙江杭州310027

出  处:《浙江大学学报(工学版)》2003年第2期157-161,共5页Journal of Zhejiang University:Engineering Science

基  金:浙江省自然科学基金资助项目(600014);浙江省重大课题资助项目(001101104).

摘  要:针对Windows2000下自带的IPSec与Linux的IPSec相互通讯比较困难的问题,在对LinuxIPSec、NDIS网络驱动程序以及对WDM设备驱动程序的研究基础上,设计并实现了一个基于中间层驱动程序的、能与LinuxIPSCE通讯的Windows平台下的IPSec,中间层驱动程序对过往的数据包进行加密或者解密操作.通过WDM设备驱动程序与上层应用程序的通讯机制,实现应用层与内核的双向通讯,即应用层向内核传递密钥及其他配置信息,内核向上层应用程序提供底层的配置信息.此外,在LinuxIPSec源代码的基础上增加了安全审计功能,具体测试结果表明,这个系统可以与LinuxIPSec通信.It is difficult to communicate between Linux IPSec and IPSec which is embedded in Windows 2000. One implementation of IPSec based on the NDIS intermediate drivers in the Windows operating system is presented, which can communicate with the Linux IPSec. The intermediate drivers can encrypt and decrypt the packet which is sent from the upper level or received from the under level. The WDM device driver communicating with the application of user mode mechanism is used to realize duplex communication between kernel and the application layer. Besides, audit function is added which is based on the source code of Linux IPSec. Test result indicates that this system can communicate with the Linux IPSec.

关 键 词:IPSEC 安全策略 中间层驱动程序 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象