计算机与现代化 ›› 2013, Vol. 218 ›› Issue (10): 110-113,.doi: 10.3969/j.issn.1006-2475.2013.10.028

• 数据库 • 上一篇    下一篇

基于EAP-TTLS的可信网络接入认证技术

张立茹,鄢楚平,詹葆荣   

  1. 华北计算技术研究所,北京100083
  • 收稿日期:2013-05-17 修回日期:1900-01-01 出版日期:2013-10-26 发布日期:2013-10-26

Trusted Network Access and Authentication Technology Based on EAP-TTLS

ZHANG Li-ru, YAN Chu-ping, ZHAN Bao-rong   

  1. North China Institute of Computing Technology, Beijing 100083, China
  • Received:2013-05-17 Revised:1900-01-01 Online:2013-10-26 Published:2013-10-26

摘要: 为解决可信网络中网络访问层对客户端和服务器的双向身份认证以及完成对终端平台的完整性进行度量的任务,深入分析TNC网络访问层IF-T标准的要求和EAP-TTLS协议的结构,重点研究EAP-TTLS协议用于可信网络中的安全性和可靠性。基于TNC@FHH开源框架将EAP-TTLS协议应用于可信网络,使用Wireshark抓包工具抓取接入认证过程的报文,并对结果进行分析。

关键词: Wireshark抓包工具, EAP-TTLS协议, 网络访问层, 双向认证

Abstract: To solve the problem of the mutual authentication between client and server in the TNC network access layer and terminal and to carry on the task to measure the integrity of client platform, the structure of EAP-TTLS protocol and IF-T standard requirements of the TNC network access layer are analyzed in-depthly, and the security and reliability of trusted network based on EAP-TTLS is focused on. This paper uses the open-source framework, TNC @ FHH, to implement the trusted network access and authentication based on EAP-TTLS. At last, Wireshark capture tool is used to catch the packet from the authentication process, and the results are analyzed.

Key words: Wireshark capture tool, EAP-TTLS protocol, network access layer, mutual authentication

中图分类号: