26 pages
1
An toµn m¹ng th«ng tin
B¶o mËt IP (IP Security)–
26 pages
2
VÝ dô vÒ TCP/IP
26 pages
3
C¸c ph¬ng thøc b¶o mËt trong bé giao thøc
TCP/IP
26 pages
4
Kh¸i qu¸t vÒ b¶o mËt IP
•
!"#$
%#&' '(%#
)*+,
•
-$.%/
0
.%12
0
.%13
4$"5!"&+$&67&8'8"9
&:
26 pages
5
IPv4 Header
CÊu tróc trêng mµo ®Çu cña bé giao thøc IP phiªn b¶n sè 4
26 pages
6
IPv6 Header
CÊu tróc trêng mµo ®Çu cña bé giao thøc IP phiªn b¶n sè 6
26 pages
7
C¸c øng dông cña IPSec
•
;%#<=>?"&
@*$$/)AB
C&"A#DE?"&
4=>&9$#/B
:1<=>FE&9*$B1G
":
•
CH67%#6IJ'K
26 pages
8
Toµn c¶nh b¶o mËt IP
26 pages
9
C¸c dÞch vô cña IPSec
•
LM"<&"A#
•
;%'%1N*K"<)<=>
•
O#*K">
•
PJ&D$$J
9Q:
9&A:
•
;%#*K"9R$:
•
;(#6")*K"
9Q:
-"!)<"$J9&A:<S!)T'R
#&U$JG'(<=,VK"'6W'R#
$JX1 YA&*#"?"%<)">
<$,
26 pages
10
Liªn kÕt b¶o mËt
•
Z$A">.J1G"[&6G
=%=#.<=%#9"&A
\]\:'#^"
\#$>9V_$"#$%#`
$<$1,1,,,:
•
Z$A'[$>&\'J&
<$.`&U[&'B<$
&94F:'R$*K"'1'=
4F'6W=<='K'>J$"
!)<"D>X1 9_:
26 pages
11
Liªn kÕt b¶o mËt
•
Z$A'?"'X&a'M"<b
&67'8"#\Z9\"
Z&:A&67F9F""&A
A:1*K"
\Z9J&D$>cJ6'Xd:%
'%nhËn thùc1toµn vÑn*K"96I1&e
/\-:
F9'6WR$:/A="'%%bÝ mËt
*K"1f'1&e#
_[\Z<dA."8"#11N*K"`
[F<8%(#*K"
26 pages
12
Hai chÕ ®é cña IPSec
•
-='1#"A9C&&: <
J.&'$#A
•
-=''6789C": <
J.&<)'$#A
26 pages
13
ChÕ ®é vËn chuyÓn (Transport Mode)
•
'6WK5$K>'8"">
•
-dR$8%9A:/
•
4)R$8'8"9&:,-$&"&&.'6
7&"AM='Xd/"U1'(
26 pages
14
ChÕ ®é ®êng hÇm (Tunnel Mode)
•
'6WK5$gA9&"&:.
•
R$9'8"h%:
•
LXd/"U1'('6W!"'`A1'
'Xd"U1'(/$&"&&.'67&"AM
26 pages
15
ChÕ ®é vËn chuyÓn (Transport Mode)
•
C&67Z&'6Wi.1**
K"'6W%1K1&67Z&>
26 pages
16
ChÕ ®é ®êng hÇm (Tunnel Mode)
•
C.&G
•
-iZ&1
•
;%1K&>
26 pages
17
AH (Authentication Header)
•
;%'%#*K">1>!)<"$J
•
\ZZ&'6Wi1*&1*K"'6W
%1K
26 pages
18
ESP (Encapsulating Security Payload)
•
;%'%#*K">`(#*K"1>!
)<"$J
•
FZ&1FC&&*K"'6W%1K
.&
26 pages
19
NhËn thùc ®Çu cuèi - ®Çu cuèi
vµ NhËn thùc ®Çu cuèi - trung gian
26 pages
20
C¸c thuËt to¸n m· ho¸ vµ nhËn thùc
•
R$
_F1G='-;-
j]_F
k-l
j]_F\
-\C]mno
;gp
•
O#
Z\-]_l
Z\-]Z\]m
26 pages
21
KÕt hîp c¸c liªn kÕt b¶o mËt - Trêng hîp 1
;%#'6WK*$K>'8"">
'
26 pages
22
KÕt hîp c¸c liªn kÕt b¶o mËt - Trêng hîp 2
;%#'6WK*$gA9&"&`
p&g`1,1,,,:,-$K>'8""><)K,
26 pages
23
KÕt hîp c¸c liªn kÕt b¶o mËt - Trêng hîp 3
;%#'6WK*$gA`$K>
'8"">K,
26 pages
24
KÕt hîp c¸c liªn kÕt b¶o mËt - Trêng hîp 4
$A&"A#DE[&'&"A#?"q&g1
>$A/$A&J&J("q&g,
-=''678d[*$AE1q&g
26 pages
25
Qu¶n lý kho¸trong IPSec
r"%s/)
C&'B<$?"'KJ`t&=
C&'B<$u$SD&6G$<$'>E
-$<$.G'6WJ&D<$f
_[?"b=#<$'>E.""v
C=#<$&"A=
@&'B<$?"&9&4A
FE]4F:
_["#$&'B<$_pp]Z'J&
<$'>ES