A new trustworthy access scheme based on short signature and implementation on Network Processor
Xiujuan Du, Zhigang Jin · 2010
The paper analyzes the security of conventional network access authentication technology and provides a novel IP address pair based short signature technology which strengthens the security of authentication and control. Conforming to TNC architecture, the paper extends the endpoint access domination to MPLS backbone by IP address pair based short signature technology and depicts a new trustworthy network access scheme and realizes it on Network Processor. The scheme enriches the integrity measure of security client and administrator's security policy with ARP virus, fraud DHCP server, address spoofing of IP and MAC, thus enhances the safety and initiative defense ability of enterprise and public networks, and reduces the cost of enterprise for security deployments greatly while achieving the SP's excellent Return-on-Investment.