Internet Protocol security internet (IPsec) message format processing method, device and equipment, and storage medium

A technology of IP message and message format, which is applied in the field of IPsec, can solve the problem of different bit width of the message, and achieve the effect of realizing universality, improving IPsec performance, and improving code standardization

Active Publication Date: 2019-04-16
ZHENGZHOU YUNHAI INFORMATION TECH CO LTD
View PDF7 Cites 3 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] However, in the actual application of IPSec technology, in the process of encryption and verification, the bit width of the message required by the encryption and verification algorithm is generally different from that of the TCP / IP network, mac layer, IP layer, and original ip message. , the IP packet is packaged into an ESP format packet, which requires multiple packet format transformations

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Internet Protocol security internet (IPsec) message format processing method, device and equipment, and storage medium
  • Internet Protocol security internet (IPsec) message format processing method, device and equipment, and storage medium
  • Internet Protocol security internet (IPsec) message format processing method, device and equipment, and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0047] In order to enable those skilled in the art to better understand the solution of the present invention, the present invention will be further described in detail below in conjunction with the accompanying drawings and specific embodiments. Apparently, the described embodiments are only some of the embodiments of the present invention, but not all of them. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0048] The terms "first", "second", "third" and "fourth" in the specification and claims of this application and the above drawings are used to distinguish different objects, rather than to describe a specific order . Furthermore, the terms "comprising" and "having", and any variations thereof, are intended to cover a non-exclusive inclusion. For example, a process, method, system, product or device comprisi...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention discloses an Internet Protocol security internet (IPsec) message format processing method, device and equipment, and a storage medium, wherein the method comprises thesteps of receiving IP message data sent by a media access control (MAC) layer, and reading a destination IP address from the IP message data; obtaining a new source IP address and a new destination IPaddress by matching from a security policy database according to the destination IP address; if the new source IP address and the new destination IP address are not all zeros, querying a security association database according to the new destination IP address to obtain an encryption key; according to the encryption key, performing encryption processing on the IP message data based on an encrypted data format to obtain encrypted message data; generating a new IP header for the IP message data, and adding authentication data processed through a preset authentication data format to the end of the IP message data as new IP message data; and packaging and sending the encrypted message data and the new IP message data. According to the method, the device, the equipment and the storage medium in the application, the IP message data format is subjected to centralized and unified processing so as to adapt to various TCP (UDP)/IP network environments, thereby improving code standardization, and improving IPsec performance.

Description

technical field [0001] Embodiments of the present invention relate to the technical field of IPsec, and in particular, relate to a method, device, equipment, and computer-readable storage medium for processing an IPsec message format. Background technique [0002] The working principle of IPsec (Internet Protocol Security Internet, protocol security) is to encrypt IP-level communication data packets for users. Even if the network data packets are stolen during network transmission, the information cannot be viewed, thus effectively ensuring data security. Security at the transport layer. [0003] However, in the actual application of IPSec technology, in the process of encryption and verification, the bit width of the message required by the encryption and verification algorithm is generally different from that of the TCP / IP network, mac layer, IP layer, and original ip message. , IP packets are packaged into ESP format packets, which need to go through multiple packet form...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/0485H04L69/161
Inventor 王莹
Owner ZHENGZHOU YUNHAI INFORMATION TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products