Analysis and Implementation of the Public Key Certificates in IKE
Yi Tang
Abstract
Yi Tang
Abstract
A key component of the IP security architecture is the Internet key exchange protocol (IKE).IKE is used to dynamically establish and maintain security associations(SAs). Four different authentication methods are allowed in IKE and three of them are associated with public key certificate. This paper analyzes the use of certificates in IKE. Some special mechanisms must be adopted due to the efficiency of certificates. A simple certificate prototype is established for IKE implementing in FreeS/WAN. Based on this prototype, it could further continue the analysis. This prototype could also be applied in the application of IPSec in Intranet.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
A key component of the IP security architecture is the Internet key exchange protocol (IKE).IKE is used to dynamically establish and maintain security associations(SAs). Four different authentication methods are allowed in IKE and three of them are associated with public key certificate. This paper analyzes the use of certificates in IKE. Some special mechanisms must be adopted due to the efficiency of certificates. A simple certificate prototype is established for IKE implementing in FreeS/WAN. Based on this prototype, it could further continue the analysis. This prototype could also be applied in the application of IPSec in Intranet.
Key concepts: Computer science, Public key certificate, IPsec, Computer security, Public key infrastructure, Key (lock), Intranet, Public-key cryptography