陈建华, 何彬彬, 崔莹. 一种安全隧道网关的设计与实现[J]. 微电子学与计算机, 2011, 28(4): 5-8.
引用本文: 陈建华, 何彬彬, 崔莹. 一种安全隧道网关的设计与实现[J]. 微电子学与计算机, 2011, 28(4): 5-8.
CHEN Jian-hua, HE Bin-bin, CUI Ying. Design and Implementation of a Kind of Secure Tunnel Gateway System[J]. Microelectronics & Computer, 2011, 28(4): 5-8.
Citation: CHEN Jian-hua, HE Bin-bin, CUI Ying. Design and Implementation of a Kind of Secure Tunnel Gateway System[J]. Microelectronics & Computer, 2011, 28(4): 5-8.

一种安全隧道网关的设计与实现

Design and Implementation of a Kind of Secure Tunnel Gateway System

  • 摘要: 针对应用层客户/服务器系统安全性欠缺的情况, 设计、实现了一套基于SSL/TLS协议的安全隧道网关, 以提供无缝的安全集成.客户端隧道网关与服务器端隧道网关之间基于X.509证书进行身份认证, 并建立SSL/TLS安全链接转发客户端请求与服务器端响应.隧道网关与客户端、服务器之间采用普通TCP/IP链接进行数据传输.隧道网关使已有客户/服务器系统无需任何修改即可享有机密性、完整性和可认证的数据传输.最后给出了网关测试结果与应用实例.

     

    Abstract: Facing with the lack of security in current running client/server systems, this paper designs and implements a kind of secure tunnel gateway system based on SSL/TLS protocol in order to provide seamless security integration to them.Client tunnel gateway and server tunnel gateway authenticate each other based on X.509 certificate, and create SSL/TLS connections to transmit the clients′ requests and servers′ responses.The gateway system uses normal TCP/IP connections to transport data with the clients and servers.It provides confidentiality, integrity and authentication for clients/servers data transmission, which needs no modification to them.Then, this paper presents its test result and application instances.

     

/

返回文章
返回