Invention Grant
US08386772B2 Method for generating SAK, method for realizing MAC security, and network device
有权
生成SAK的方法,实现MAC安全的方法和网络设备
- Patent Title: Method for generating SAK, method for realizing MAC security, and network device
- Patent Title (中): 生成SAK的方法,实现MAC安全的方法和网络设备
-
Application No.: US12398580Application Date: 2009-03-05
-
Publication No.: US08386772B2Publication Date: 2013-02-26
- Inventor: Hongguang Guan
- Applicant: Hongguang Guan
- Applicant Address: CN Shenzhen
- Assignee: Huawei Technologies Co., Ltd.
- Current Assignee: Huawei Technologies Co., Ltd.
- Current Assignee Address: CN Shenzhen
- Agency: Leydig, Voit & Mayer, Ltd.
- Priority: CN200610126940 20060906
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A method for generating a secure association key (SAK), a method for realizing medium access control security (MACsec) and a network device are provided. The method for generating an SAK includes the following steps. A sending key selection protocol (KSP) instance sends a key selection protocol data unit (KSPDU) to the other KSP instances in the same secure connectivity association (CA). The KSPDU includes a secure connectivity association key identifier (CKI) of the instance and information about a MACsec level that the sending KSP instance belongs to. If the receiving KSP instance and the sending KSP instance belong to the CA with the same MACsec level, an SAK is generated based on the KSPDU. The MACsec of multiple levels in a communication network and the secure MACsec network communication with multiple levels are realized, thus ensuring the confidentiality of the network communication.
Public/Granted literature
- US20090217032A1 METHOD FOR GENERATING SAK, METHOD FOR REALIZING MAC SECURITY, AND NETWORK DEVICE Public/Granted day:2009-08-27
Information query