网络安全与数据治理2025,Vol.44Issue(6):11-19,9.DOI:10.19358/j.issn.2097-1788.2025.06.002
基于自组网的轻量化IPsec加密设计与实现
Design and implementation of lightweight IPsec encryption based on wireless Ad hoc network
张卫敏 1焦运良 1王硕 2郑和芳 2张攀1
作者信息
- 1. 中电长城圣非凡信息系统有限公司,北京 102209
- 2. 中国电子信息产业集团有限公司第六研究所,北京 100083
- 折叠
摘要
Abstract
In response to the security requirements of wireless Ad hoc networks,this paper proposes a software and hardware co-design scheme based on lightweight IPsec encryption.The scheme constructs a core hardware platform centered on a"CPU+Al-gorithm FPGA+Baseband Waveform FPGA"architecture.By designing a lightweight"four-round interaction"key negotiation protocol,the interaction process is streamlined by 33%,effectively reducing traffic overhead.On the software side,a layered ar-chitecture is adopted to implement functions such as transmission service management,encryption/decryption processing,base-band waveform processing,wireless transceiver operations,and application management.Test results verify that the design a-chieves a wireless communication latency of approximately 16.71 ms while providing lightweight IPsec encryption/decryption,with a TCP lossless transmission rate of up to 23.28 Mbit/s.关键词
无线自组网/IPsec/轻量化/密钥协商/安全加密Key words
wireless Ad hoc network/IPsec/lightweight/key negotiation/secure encryption分类
电子信息工程引用本文复制引用
张卫敏,焦运良,王硕,郑和芳,张攀..基于自组网的轻量化IPsec加密设计与实现[J].网络安全与数据治理,2025,44(6):11-19,9.