词条 | SwIPe (protocol) |
释义 |
The swIPe IP Security Protocol (swIPe) is an experimental Internet Protocol (IP) security protocol that was specified in 1993. It operates at the Internet Layer of the Internet Protocol Suite. PurposeswIPe provides confidentiality, integrity, and authentication of network traffic, and can be used to provide both end-to-end and intermediate-hop security. swIPe is concerned only with security mechanisms. The protocol does not handle policy and key management, which are handled outside the protocol. It works by augmenting each packet with a cryptographically-strong authenticator and/or encrypting the data to be sent.[1] Protocol descriptionswIPe encapsulates each IP datagram to be secured inside a swIPe packet.[1] A swIPe packet is an IP packet of protocol type 53.[2][3] A swIPe packet starts with a header, which contains identifying data and authentication information; the header is followed by the original IP datagram, which in turn is followed by any padding required by the security processing. Depending on the negotiated policy, the sensitive part of the swIPe packet (the authentication information and the original IP datagram) may be encrypted.[1] Cisco routers and switches running IOS have been found vulnerable to denial of service (DoS) attacks which may result from processing packets with IP Protocol 53.[4] References1. ^1 2 {{cite news|url=http://www.crypto.com/papers/swipe.id.txt|title=The swIPe IP Security Protocol INTERNET DRAFT|date=December 1993 |author=John Ioannidis and Matt Blaze |publisher=Columbia University and AT&T Bell Labs }} 2. ^{{cite web |url=http://www.iana.org/assignments/protocol-numbers |publisher=Internet Assigned Numbers Authority (IANA)|title=Assigned Internet Protocol Numbers }} 3. ^{{cite news |title=RFC5237 |publisher=Internet Engineering Task Force (IETF) |url=http://rfc.net/rfc5237.html }} 4. ^Security advisory for Cisco products 2 : Internet layer protocols|Network architecture |
随便看 |
|
开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。