透過您的圖書館登入
IP:3.17.162.247
  • 學位論文

SIP安全機制之設計與實作

The design and implementation of SIP security

指導教授 : 逄愛君
若您是本文的作者,可授權文章由華藝線上圖書館中協助推廣。

摘要


網際網路語音服務(VoIP)已經吸引眾多的注意。而SIP最大的優點在於整個架構簡單,十分具有彈性,還可和許多協定搭配使用,例如: SDP,衍生出更多變的功能, 提供更多貼心的服務。但因為SIP是建構在IP-Base的網路上,也是駭客最容易下手的地方,因此要能夠在IP-Base的網路上提供安全的傳輸,包括如何防止竊聽、如何辨識身分、如何防止其他惡意的攻擊等,都是SIP面臨的重大挑戰。 在這個論文中,我們實作出一套認證安全機制並且和現有的安全機制比較它們之間的效能。研究的結果告訴我們,我們的安全機制更能夠防禦網路惡意攻擊外,也可提供更有彈性的認證頻率提供更好的效能。

並列摘要


Session Initiation Protocol is the Internet Engineering Task Force (IETF) standard for IP telephony. SIP is one of the currently receiving much attention and seems to be the most promising signaling protocol for the current and future IP telephony services. For the realization of such a scenario, there is an obvious need to provide a certain level of quality and security, comparable to that provided by the traditional telephone systems. The problem of security is strictly related to the signaling mechanisms and the service provisioning model. For this reason, security support is a very hot topic in the SIP and IP telephony standardization. In our research, we focus on the problem of authentication providing a short tutorial on the solution under standardization. The architecture of a possible commercial IP telephony service including user authentication is also described. Finally, we focus on performance issues and analysis some security features. By means of a real testbed implementation, we provide an experimental performance analysis of the SIP security mechanisms, based on our source C# implementation of a SIP authentication server.

並列關鍵字

VoIP security authentication

參考文獻


[1] J. Rosenberg, et. al., "SIP: Session Initiation Protocol", IETF RFC 3261, June 2002.
[5] A. Niemi, et. al., "Hypertext Transfer Protocol (HTTP) Digest Authentication Using Authentication and Key Agreement (AKA)", IETF RFC 3310, September 2002.
[10] S. Kent and R. Atkinson, “Security Architecture for the Internet Protocol”, IETF RFC 2401, Nov. 1998.
[17] Stefano Salsano, Luca Veltri, and Donald Papalilo, “SIP Security Issues: The SIP authentication procedure and its processing load”, IEEE Network, November/December 2002.
[2] M. Handley, et. al., "SDP: Session Description Protocol", IETF RFC 2327, April 1998.

延伸閱讀