计算机科学与探索2017,Vol.11Issue(3):382-388,7.DOI:10.3778/j.issn.1673-9418.1602038
使用DK机制的动态地址分配安全认证方法
Security Authentication Method of DHCP Using DK Mechanism
摘要
Abstract
The DHCP (dynamic host configuration protocol) allocates and manages IP address dynamically, and pro-motes address utilization, so the protocol has been widely used. However, due to the protocol without security mech-anism, the potential security vulnerabilities such as illegal DHCP, Mac address disguise, replay attack and DoS attack are becoming more and more prominent. This paper proposes a security authentication model based on dynamic key (DK_SAM). The model combines with the current system time to compute the one-time key and uses the key to generate the message authentication code by Hash algorithm. Finally, the model achieves the objective of the security authentication through verifying the authentication code in Option180. Experimentation indicates that DK_SAM ensures the security characteristics, as well it has higher efficiency.关键词
动态主机配置协议(DHCP)/安全认证/安全漏洞/DK_SAMKey words
dynamic host configuration protocol (DHCP)/security authentication/security vulnerability/DK_SAM分类
信息技术与安全科学引用本文复制引用
张富强,陈琳,吴冬冬..使用DK机制的动态地址分配安全认证方法[J].计算机科学与探索,2017,11(3):382-388,7.基金项目
The National Natural Science Foundation of China under Grant No. 61379148 (国家自然科学基金). (国家自然科学基金)