Host identification protocol (HIP) safe channel multiplexing method and device thereof

A host identification protocol and security channel technology, which is applied in the field of host identification protocol security channel multiplexing, and can solve problems such as increased maintenance burden and large number of HIP security channels.

Inactive Publication Date: 2011-10-19
HUAWEI TECH CO LTD
View PDF4 Cites 6 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

In order to ensure communication security, HIP Proxy must establish a secure channel for each pair of communicating traditional hosts and HIP hosts, that is, if a HIP host communicates with multiple traditional hos...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Host identification protocol (HIP) safe channel multiplexing method and device thereof
  • Host identification protocol (HIP) safe channel multiplexing method and device thereof
  • Host identification protocol (HIP) safe channel multiplexing method and device thereof

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0034] see figure 1 , figure 1 It is a schematic flowchart of a HIP security channel multiplexing method provided by Embodiment 1 of the present invention. Such as figure 1 As shown, the method may include:

[0035] 101. Receive a message requesting data transmission from at least one traditional host to the HIP host;

[0036] In the embodiment of the present invention, the HIP agent may receive at least one message requesting data transmission sent by the traditional host to the HIP host, and the HIP agent may process and encapsulate the message sent by the traditional host, and then send it to the HIP host.

[0037] For the HIP proxy, relevant information can be obtained from the message requesting data transmission sent by the traditional host, and then (for example, through DNS) to obtain the response access information of the HIP host, or according to the request for data transmission sent by the traditional host. The message is to obtain the information of the corres...

Embodiment 2

[0078] see figure 2 , figure 2 It is a schematic flowchart of a HIP security channel multiplexing method provided by Embodiment 2 of the present invention. Such as figure 2 As shown, the method may include:

[0079] 201. Whether a HIP security channel has been established between the HIP host detection and the HIP proxy, if so, execute 203; if not, execute 202;

[0080] In the embodiment of the present invention, the HIP host can detect whether it has saved valid HIP association information with the HIP proxy, so as to determine whether a HIP security channel has been established between itself and the HIP proxy. Wherein, the above-mentioned effective HIP association information is saved when the HIP host establishes the HIP security channel with the above-mentioned HIP agent.

[0081] Specifically, the HIP host and the HIP agent need to implement the HIP base exchange protocol to establish a HIP security channel. After the HIP base exchange protocol is executed, the HI...

Embodiment 3

[0123] see image 3 , image 3 It is a schematic structural diagram of a HIP security channel multiplexing device provided by Embodiment 3 of the present invention. The HIP security channel multiplexing device provided by the embodiment of the present invention can be used as an independent device to realize the multiplexing of the HIP security channel, and can also be used as a new part of the existing HIP agent to realize the multiplexing of the HIP security channel. use. Such as image 3 As shown, the device may include:

[0124] The first receiving unit 301A is configured to receive a message requesting data transmission sent from at least one traditional host to the HIP host;

[0125] A detection unit 302, configured to detect whether a HIP security channel has been established with the above-mentioned HIP host;

[0126] The first signaling unit 303A is configured to transmit control signaling to the above-mentioned HIP host when the detection result of the detection...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention relates to the field of safe channel multiplexing, and discloses a host identification protocol (HIP) safe channel multiplexing method and a device thereof, and is used for reducing the number of HIP safe channels and the maintenance cost. The method comprises the following steps: receiving a data transmission message request transmitted to HIP hosts by at least one traditional host; detecting whether the HIP safe channels are set up among the HIP hosts or not; if so, transmitting control signaling to the HIP hosts, wherein the control signaling is used for requesting to multiplex data transmitted to the traditional host by the HIP safe channels; and if response messages returned by the HIP hosts are received, transmitting the data of the traditional host to the HIP hosts through the HIP safe channels. The embodiment of the invention can reduce the number of the HIP safe channels set up among the HIP hosts and the cost for maintaining the safe channels, and improves the utilization rate of the HIP safe channels.

Description

technical field [0001] The invention relates to the field of security channel multiplexing, in particular to a host identification protocol security channel multiplexing method and device. Background technique [0002] In the Internet, an Internet Protocol (Internet Protocol, IP) address not only serves as a host location identifier at the network layer, but also serves as a host identity identifier at the transport layer. In this way, the principle of minimizing coupling between different layers in the Internet layered structure is actually destroyed, and the tight coupling between the network layer and the transport layer is not conducive to the independent development of each layer. For example, when a host moves in the Internet, the IP address should not change as the identity of the host; but as the location of the host on the Internet, the IP address should change, which will easily cause confusion in logic concepts. [0003] In order to realize the separation of host...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L9/00
CPCH04L61/103H04L63/0471H04L63/0281H04L61/5084H04J2203/0069H04J7/00
Inventor 张大成
Owner HUAWEI TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products