论文部分内容阅读
匿名通信技术作为保护隐私的一种重要手段已经被广泛接受。但是在现有的网络环境下,由于IP(Internet protocol)地址相对固定,攻击者可以通过追查IP来破坏系统的匿名性。为了提高IPv6网络中通信的匿名性,该文提出了一种在IPv6下的P2P(peer-to-peer)匿名通信方案。该方案改进了IPv6下的地址生成算法,以及现有的基于葱头路由的匿名通信机制。通过利用IPv6地址空间大的优势,周期变换节点IP地址,避免了因IP地址标识而导致的隐私泄漏;通过葱头路由机制来保证IP地址的跨网段隐藏以及数据的加密。实验表明:2种方法的结合可以明显提高匿名通信系统的匿名性,并且该系统的通信效率和兼容性都没有减弱。
Anonymous communication technology as an important means to protect privacy has been widely accepted. However, under the existing network environment, because IP (Internet protocol) addresses are relatively fixed, an attacker can destroy the anonymity of the system by tracing the IP. In order to improve the anonymity of communication in IPv6 networks, this paper proposes a peer-to-peer (P2P) anonymous communication scheme under IPv6. The scheme improves the address generation algorithm under IPv6 and the existing anonymous communication mechanism based on the onion routing. By utilizing the advantage of large IPv6 address space, the node IP address is periodically changed, thereby avoiding the privacy leakage caused by the IP address identification. The on-line routing mechanism is adopted to ensure inter-network segment hiding of IP addresses and data encryption. Experiments show that the combination of the two methods can significantly improve the anonymity of the anonymous communication system, and the communication efficiency and compatibility of the system are not weakened.