CN106101107A - A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address - Google Patents

A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address Download PDF

Info

Publication number
CN106101107A
CN106101107A CN201610425805.XA CN201610425805A CN106101107A CN 106101107 A CN106101107 A CN 106101107A CN 201610425805 A CN201610425805 A CN 201610425805A CN 106101107 A CN106101107 A CN 106101107A
Authority
CN
China
Prior art keywords
address
fragmentation
information
transmitting terminal
data
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610425805.XA
Other languages
Chinese (zh)
Inventor
刘建国
吴琼
王孙龙
陈伟
祝宁华
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Institute of Semiconductors of CAS
Original Assignee
Institute of Semiconductors of CAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Institute of Semiconductors of CAS filed Critical Institute of Semiconductors of CAS
Priority to CN201610425805.XA priority Critical patent/CN106101107A/en
Publication of CN106101107A publication Critical patent/CN106101107A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0485Networking architectures for enhanced packet encryption processing, e.g. offloading of IPsec packet processing or efficient security association look-up

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses the secret communication method of a kind of fragmentation transmission technology based on the saltus step of IP address, by IP address conversion module one IP address being converted into multiple IP address in information transmitting terminal, then communication data is dispersed into information fragmentation and transmits from multiple IP addresses;At information receiving end, receive by the information fragmentation of multiple IP addresses transmission, reintegrated by the rule of fragmentation when sending according to signal, multichannel IP address be converted to a road IP.The number of the IP address of information fragmentation process and select which IP to be transmitted all to be determined by key in communication process.Invention increases the difficulty that communication data is intercepted and captured complete information by third party, improve confidentiality.

Description

A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address
Technical field
The present invention relates to secret communication field, the secrecy particularly relating to fragmentation transmission technology based on the saltus step of IP address is led to Letter method.The present invention can be used for the encryption between network service, and the LAN encryption that i.e. can be used for short-range communication can also be used for The wide area network encryption of telecommunication, prevents important information from being stolen by third party in communication process.
Background technology
Current network service is all another terminal that information is sent to from a terminal communicate, and each terminal one As corresponding to an IP address.It is to say, communication data is packaged into complete packet is sent to destination from source address Location, these information are all coherent complete, during transmission, it is easy to all intercepted and captured.Once stolen by third party, institute By compromised, there is great potential safety hazard in some Content of Communication.
Summary of the invention
The invention provides the secret communication method of a kind of fragmentation transmission technology based on the saltus step of IP address, including as follows Step: in information transmitting terminal, is dispersed into a communication data multiple information fragmentation, and uses multiple by the plurality of information fragmentation IP address is transmitted;At information receiving end, receive, by multiple IP addresses, the multiple described letter that described information transmitting terminal transmits Breath fragment, and the information fragmentation received is reintegrated to recover initial data, and by multiple IP ground of information receiving end Location is converted into an IP address, and the data after integrating are sent to the terminal that this IP address is corresponding.
According to the detailed description of the invention of the present invention, connect in described information transmitting terminal and described information and all there is an IP Address conversion module, it has been respectively intended to the dispersion of described communication data and reintegrating of described information fragmentation.
According to the detailed description of the invention of the present invention, the IP address conversion module of described transmitting terminal is by the terminal IP ground of transmitting terminal Location is converted into multiple IP address, under the control controlling sequence, communication data is dispersed into information fragmentation many by this Individual IP address sends.
According to the detailed description of the invention of the present invention, described control sequence is based on what a specific encryption key produced, The breaing up and select to be sent by which IP address to be determined by this encryption key of information fragmentation.
According to the detailed description of the invention of the present invention, the IP address conversion module of described information receiving end passes through multiple IP addresses Receive the information fragmentation of the transmission from described transmitting terminal.
According to the detailed description of the invention of the present invention, the IP address conversion module of described information receiving end controls sequence at one Control under described information fragmentation reintegrated into complete initial data, and by the IP address conversion module of information receiving end Multiple IP addresses be converted into the IP address of terminal of receiving terminal, and the data after integrating to be sent to this IP address of terminal corresponding Terminal.
According to the detailed description of the invention of the present invention, the control sequence of described receiving terminal is to be produced by a decruption key, only Having when this decruption key is consistent with the encryption key of information transmitting terminal, deciphering could success.
The invention have the advantages that
1) data have dispersibility, are sent by multiple IP addresses and receive, preventing third party from intercepting and capturing complete information, carry The high safety of information transmission;
2) transmission data be to upset and be distributed to multiple IP address to communicate according to specific key, wherein IP address and The selection of number is determined by key, and therefore data transmission has extraordinary disguise and confidentiality, even if third party is cutting Obtain the information fragmentation that multichannel IP transmits, it is also difficult to from information fragmentation, recover original communication data.
Accompanying drawing explanation
Fig. 1 is an embodiment of the secret communication method of the fragmentation transmission technology based on the saltus step of IP address of the present invention Local area network communication process schematic block diagram;
Fig. 2 is an embodiment of the secret communication method of the fragmentation transmission technology based on the saltus step of IP address of the present invention Wan communication process schematic block diagram;
One embodiment of the secret communication method of the fragmentation transmission technology based on the saltus step of IP address of Fig. 3 position present invention VPN traffic process schematic block diagram.
Detailed description of the invention
The invention provides the secret communication method of a kind of fragmentation transmission technology based on the saltus step of IP address, i.e. in information Each communication data is dispersed into information fragmentation by transmitting terminal, according to specific cipher controlled patch information by multiple IP addresses Send;At the receiving terminal of information, then the control by same key, same number of IP address receive patch information, And carried out reconfiguring and recover original communication data, output to communication terminal, complete a secret communication.
The method of the secret communication of the present invention, in information transmitting terminal, mainly comprises following link:
Transmitting terminal has an IP address conversion module, and when communicating, the data of transmission are become by an original IP address Become multichannel IP address, carry out information transmission;
In IP address conversion module, according to a specific key, communication data is dispersed into fragmentation of data, then Send through multiple IP addresses;
Through the dispersion fragmentation of data of encryption, after multichannel IP address exports, it is transmitted through different routes;
At the receiving terminal of information, also having an IP address conversion module, this module also has multiple IP address, can receive multichannel The information fragmentation transmitted, and fragmentation of data is integrated;
In the IP address conversion module of receiving terminal, use specific key, scattered multichannel data is integrated, extensive Fu Cheng mono-road initial data, the key that the key that outfan deciphering uses to use with transmitting terminal encryption is identical.
Through the data of deciphering, export IP address of terminal from modular converter, the other end i.e. communicated, it is achieved thereby that one Secondary secret communication.
For making the object, technical solutions and advantages of the present invention clearer, below in conjunction with specific embodiment, and reference Accompanying drawing, the present invention is described in further detail.
The implementation of the present invention mainly has following three kinds:
1) Fig. 1 is the enforcement of secret communication method of fragmentation transmission technology based on the saltus step of IP address of the present invention The local area network communication process schematic block diagram of example.Refering to accompanying drawing 1, this communication is the transmission completing information inside LAN, needs Two PCs communicated all are connected with LAN, before data send, first pass through data encryption and process, this ciphering process master Including two links: be first that communication data is resolved into information fragmentation, then pass through under the control of certain encryption keys Different IP addresses is transmitted;Receiving terminal multiple IP address receives the information fragmentation of source address transmission and it is carried out data Decryption processing, this decrypting process mainly includes two links: first by scattered data receiver to IP address conversion module, then According to particular solution decryption key, the crumb data received is integrated, and export from unique IP address, be sent to communication The other end, thus complete a secret communication.
Described IP address conversion module, can be a special board of design, board has multiple network interface cards, Qi Zhongyi The corresponding user side of card of throwing the net, remaining network interface card is used for communication data transfer.After key encryption, user side network interface card transmit Communication data be dispersed into multiple information fragmentation, send out through remaining network interface card;Information receiving end, there is also such a plate Card, multiple network interface cards receive information fragmentation, and then crumb data synthesizes a road, and transmission, to the network interface card of the other end that communicates, completes to lead to Letter.
2) Fig. 2 is the enforcement of secret communication method of fragmentation transmission technology based on the saltus step of IP address of the present invention The wan communication process schematic block diagram of example.Refering to accompanying drawing 2, this communication is to communicate in wide area network, say, that communication Wide range, is not limited solely to inside LAN, but can realize with LAN outside terminal communicate.This communication Before data transmission, being first encrypted data to be sent, this ciphering process mainly includes two links: be first Decompose data into fractionlet, be then transmitted by different IP addresses under the control of specific key;By different IP ground The crumb data that location sends, server that can be different in network, there is server corresponding thereto each IP address, broken Sheet data are sent to the IP address of correspondence again by different servers;Receiving terminal multiple IP address receives the broken of source address transmission Sheet data also carry out data deciphering process to it, and this decrypting process mainly includes two links: first by scattered data receiver To modular converter, then according to specific key, the crumb data received is integrated, and exports from unique IP address, It is sent to the other end of communication, thus completes a secret communication.
3) Fig. 3 is the enforcement of secret communication method of fragmentation transmission technology based on the saltus step of IP address of the present invention The VPN traffic process schematic block diagram of example.Refering to accompanying drawing 3, this communication is to utilize VPN technologies, encapsulates out data in public network Communication tunnel, for communicating pair.Data to be sent before data transmission, are first encrypted by this communication, should Ciphering process mainly includes two links: is first to decompose data into fractionlet, then passes through under the control of specific key Different IP addresses is transmitted;The crumb data sent by different IP addresses arrives the LAN specified through VPN, and will letter Breath is sent to multiple IP addresses of this LAN;Receiving terminal multiple IP address receives the crumb data of source address transmission and to it Carrying out data deciphering process, this decrypting process mainly includes two links: first by scattered data receiver to modular converter, so Afterwards according to specific key, the crumb data received is integrated, and export from unique IP address, be sent to the another of communication One end, thus complete a secret communication.
Owing to communication data is to be sent by multiple IP addresses and receive, and signal is the form transmission with fragmentation, Which increasing the difficulty of acquisition of information, even if having intercepted and captured multiline message data, being the fragment upset at random due to it, be difficult to Revert to original data, thus increase the difficulty obtaining complete information, reach the purpose of communication security.
Particular embodiments described above, has been carried out the purpose of the present invention, technical scheme and beneficial effect the most in detail Describe in detail bright it should be understood that the foregoing is only the specific embodiment of the present invention, be not limited to the present invention, all Within the spirit and principles in the present invention, any modification, equivalent substitution and improvement etc. done, should be included in the protection of the present invention Within the scope of.

Claims (10)

1. a secret communication method for fragmentation transmission technology based on the saltus step of IP address, comprises the steps:
In information transmitting terminal, a communication data is dispersed into multiple information fragmentation, and the plurality of information fragmentation is used multiple IP address is transmitted;
At information receiving end, receive, by multiple IP addresses, the multiple described information fragmentation that described information transmitting terminal transmits, and right The information fragmentation received reintegrates to recover initial data, and multiple IP addresses of information receiving end are converted into one IP address, the data after integrating are sent to the terminal that this IP address is corresponding.
The secret communication method of fragmentation transmission technology based on the saltus step of IP address the most according to claim 1, its feature Being, connecing in described information transmitting terminal and described information and all have an IP address conversion module, it has been respectively intended to The dispersion of described communication data and reintegrating of described information fragmentation.
The secret communication method of fragmentation transmission technology based on the saltus step of IP address the most according to claim 2, its feature Being, the IP address of terminal of transmitting terminal is converted into multiple IP address by the IP address conversion module of described transmitting terminal, a control Under the control of sequence processed, communication data is dispersed into information fragmentation and is sent by the plurality of IP address.
The secret communication method of fragmentation transmission technology based on the saltus step of IP address the most according to claim 3, its feature Being, described this controls sequence and is based on what specific encryption key produced, the breaing up and selecting by which of information fragmentation Individual IP address sends and is determined by this encryption key.
Its feature of secret communication method of fragmentation transmission technology based on the saltus step of IP address the most according to claim 4 exists In, the IP address conversion module of described information receiving end receives the information of the transmission from described transmitting terminal by multiple IP addresses Fragment.
The secret communication method of fragmentation transmission technology based on the saltus step of IP address the most according to claim 5, its feature Be, the IP address conversion module of described information receiving end one control sequence control under by the most whole for described information fragmentation Synthesize complete initial data, and multiple IP addresses of the IP address conversion module of information receiving end are converted into the end of receiving terminal End IP address, and will integrate after data be sent to the terminal that this IP address of terminal is corresponding.
The secret communication method of fragmentation transmission technology based on the saltus step of IP address the most according to claim 6, its feature Being, the control sequence of described receiving terminal is to be produced by a decruption key, only when this decruption key and information transmitting terminal When encryption key is consistent, reintegrating of information fragmentation could success.
8. a secret signalling for fragmentation transmission technology based on the saltus step of IP address, has information transmitting terminal and information connects Receiving end, described information transmitting terminal and described information connect all has an IP address conversion module;
The IP address conversion module of described information transmitting terminal is used for a communication data is dispersed into multiple information fragmentation, and should Multiple information fragmentation use multiple IP addresses to be transmitted;
The IP address conversion module of described information receiving end is for receiving what described information transmitting terminal transmitted by multiple IP addresses Multiple described information fragmentation, and the information fragmentation received is reintegrated to recover initial data, and by information receiving end Multiple IP addresses be converted into an IP address, will integrate after data be sent to the terminal that this IP address is corresponding.
The secret signalling of fragmentation transmission technology based on the saltus step of IP address the most according to claim 8, its feature Be, described information transmitting terminal and information transmitting terminal IP address conversion module produced by encryption key and decruption key respectively Estranged Chan Sheng not control sequence, utilize this control sequence to control breaing up of communication data and reintegrating of information fragmentation respectively.
The secret signalling of fragmentation transmission technology based on the saltus step of IP address the most according to claim 9, its feature Being, only when this decruption key is consistent with the encryption key of information transmitting terminal, reintegrating of information fragmentation could success.
CN201610425805.XA 2016-06-16 2016-06-16 A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address Pending CN106101107A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610425805.XA CN106101107A (en) 2016-06-16 2016-06-16 A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610425805.XA CN106101107A (en) 2016-06-16 2016-06-16 A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address

Publications (1)

Publication Number Publication Date
CN106101107A true CN106101107A (en) 2016-11-09

Family

ID=57236039

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610425805.XA Pending CN106101107A (en) 2016-06-16 2016-06-16 A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address

Country Status (1)

Country Link
CN (1) CN106101107A (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109327293A (en) * 2017-08-01 2019-02-12 中国电信股份有限公司 Jump channel control method and server, data transmission nodal and system
FR3072238A1 (en) * 2017-10-10 2019-04-12 Commissariat A L'energie Atomique Et Aux Energies Alternatives DEVICE AND METHOD FOR DATA TRANSMISSION
CN112714504A (en) * 2020-12-16 2021-04-27 北京连山科技股份有限公司 End-to-end real-time data transmission method and system

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1606857A (en) * 2001-10-25 2005-04-13 高通股份有限公司 Method and system for transferring ip packets by aggregating multiple wireless communication channels for high data rate transfers
CN101159694A (en) * 2007-11-16 2008-04-09 中兴通讯股份有限公司 Method of preventing fail fragment reassembly of IP sharing distributed system
CN101232617A (en) * 2007-12-27 2008-07-30 华为技术有限公司 Device, system and method for processing video stream business data
CN102868630A (en) * 2012-09-07 2013-01-09 北京邮电大学 Parallel self-adaption data sending method and device based on multiple IP (Internet Protocol) addresses
US20140310391A1 (en) * 2013-04-16 2014-10-16 Amazon Technologies, Inc. Multipath routing in a distributed load balancer
CN105450644A (en) * 2015-11-20 2016-03-30 中国科学院半导体研究所 Secret communication method and device based on multi-application fragmented transmission

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1606857A (en) * 2001-10-25 2005-04-13 高通股份有限公司 Method and system for transferring ip packets by aggregating multiple wireless communication channels for high data rate transfers
CN101159694A (en) * 2007-11-16 2008-04-09 中兴通讯股份有限公司 Method of preventing fail fragment reassembly of IP sharing distributed system
CN101232617A (en) * 2007-12-27 2008-07-30 华为技术有限公司 Device, system and method for processing video stream business data
CN102868630A (en) * 2012-09-07 2013-01-09 北京邮电大学 Parallel self-adaption data sending method and device based on multiple IP (Internet Protocol) addresses
US20140310391A1 (en) * 2013-04-16 2014-10-16 Amazon Technologies, Inc. Multipath routing in a distributed load balancer
CN105450644A (en) * 2015-11-20 2016-03-30 中国科学院半导体研究所 Secret communication method and device based on multi-application fragmented transmission

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109327293A (en) * 2017-08-01 2019-02-12 中国电信股份有限公司 Jump channel control method and server, data transmission nodal and system
CN109327293B (en) * 2017-08-01 2022-03-04 中国电信股份有限公司 Jump channel control method, server, data transmission node and system
FR3072238A1 (en) * 2017-10-10 2019-04-12 Commissariat A L'energie Atomique Et Aux Energies Alternatives DEVICE AND METHOD FOR DATA TRANSMISSION
WO2019072470A1 (en) * 2017-10-10 2019-04-18 Commissariat A L'energie Atomique Et Aux Energies Alternatives Device and method for data transmission
CN111194541A (en) * 2017-10-10 2020-05-22 原子能和能源替代品委员会 Apparatus and method for data transmission
CN111194541B (en) * 2017-10-10 2022-04-05 原子能和能源替代品委员会 Apparatus and method for data transmission
US11665143B2 (en) 2017-10-10 2023-05-30 Commissariat A L'energie Atomique Et Aux Energies Alternatives Method, device and medium for transmission of fragmented IP addresses and data packets through a network
CN112714504A (en) * 2020-12-16 2021-04-27 北京连山科技股份有限公司 End-to-end real-time data transmission method and system
CN112714504B (en) * 2020-12-16 2021-11-05 北京连山科技股份有限公司 End-to-end real-time data transmission method and system

Similar Documents

Publication Publication Date Title
CN106330920A (en) Secure communication method based on multichannel signal fragmentization transmission technology
CN106656510A (en) Encryption key acquisition method and system
CN108650028B (en) Multiple identity authentication system and method based on quantum communication network and true random number
CN104994112A (en) Method for encrypting communication data chain between unmanned aerial vehicle and ground station
CN106209883A (en) Based on link selection and the multi-chain circuit transmission method and system of broken restructuring
CN112491550B (en) Mobile terminal equipment credibility authentication method and system based on Internet of vehicles
CN106452739A (en) Quantum network service station and quantum communication network
CN107690642A (en) Radio communication
CN101197664A (en) Method, system and device for key management protocol negotiation
CN105306161B (en) A kind of information security method and device based on the transmission of multi channel signals fragmentation
CN104753953A (en) Access control system
CN103684772B (en) Dynamic deficiency encryption system
CN103118363A (en) Method, system, terminal device and platform device of secret information transmission
CN105450644A (en) Secret communication method and device based on multi-application fragmented transmission
CN108964895B (en) User-to-User identity authentication system and method based on group key pool and improved Kerberos
CN106101107A (en) A kind of secret communication method of fragmentation transmission technology based on the saltus step of IP address
CN105792190A (en) Data encryption, decryption and transmission method in communication system
CN109600374A (en) Secure user data sending method and its system based on block chain
CN101517986B (en) For the method and system of addressing and route in the correspondence of encryption
CN105847001A (en) Device, system and method for digital microwave communication based on quantum encryption
CN111818023A (en) Data transmission method and data transmission system suitable for air-ground communication link
CN101052029B (en) For transmitting the method for the message comprising extensible markup language information
CN101783792B (en) Encrypted communication method and system based on internet
CN108965266B (en) User-to-User identity authentication system and method based on group key pool and Kerberos
KR20210087127A (en) The one-way-ring/two-way-ring network quantum key distribution way adopted to hybrid-quantum channel and The hybrid quantum communication unit and The hybrid quantum communication closure net system distributing different kinds of key

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20161109