RFC 7474-2015

Security Extension for OSPFv2 When Using Manual Key Management


 

 

非常抱歉,我们暂时无法提供预览,您可以试试: 免费下载 RFC 7474-2015 前三页,或者稍后再访问。

如果您需要购买此标准的全文,请联系:

点击下载后,生成下载文件时间比较长,请耐心等待......

 

标准号
RFC 7474-2015
发布日期
2015年04月01日
实施日期
2015年05月07日
废止日期
中国标准分类号
/
国际标准分类号
/
发布单位
IETF - Internet Engineering Task Force
引用标准
14
适用范围
The current OSPFv2 cryptographic authentication mechanism as defined in RFCs 2328 and 5709 is vulnerable to both inter-session and intrasession replay attacks when using manual keying. Additionally@ the existing cryptographic authentication mechanism does not cover the IP header.This omission can be exploited to carry out various types of attacks. This document defines changes to the authentication sequence number mechanism that will protect OSPFv2 from both inter-session and intrasession replay attacks when using manual keys for securing OSPFv2 protocol packets. Additionally@ we also describe some changes in the cryptographic hash computation that will eliminate attacks resulting from OSPFv2 not protecting the IP header.




Copyright ©2007-2022 ANTPEDIA, All Rights Reserved
京ICP备07018254号 京公网安备1101085018 电信与信息服务业务经营许可证:京ICP证110310号