A Modified Version of IKEv2 for Using in Client-Server Environments
Mohammad M. Karbasioun, Mehdi Berenjkub, Bahareh Taji · 2008
New version of Internet key exchange protocol (IKEv2) is introduced in this article. Despite of its several advantages, it suffers from some deficiencies when applying in client-server environments. The main problem is regarded to its inefficient method for resisting against DoS attacks. A new protocol is proposed in this article, in which besides keeping maximum fidelity to IKEv2 framework, new necessary features are added. More resistance against DoS attacks without forcing extra delays, and identity protection of initiators (clients) against active attackers are the advantage of using this protocol. Also asymmetric distribution of calculations scheme, introduced in this protocol, makes it unique, while comparing with other protocols.