Design and Implementation of SKIP

We present a key-distribution scheme that is particularly well suited for use in conjunction with a session-less datagram protocol such as IP or IPv6. We describe how this scheme can be used for both IP unicast and multicast applications, providing an approach for scalable multicast key distribution. We also describe an implementation of this scheme on the Solaris operating system, and present some findings on the performance of encryption at the IP layer. Note – This paper was originally presented at the INET ‘95 conference in Hawaii on June 28, 1995, under the title Simple Key Management for Internet Protocols (SKIP). It also appears in the conference proceedings under that title.

[1]  Alfred Menezes,et al.  Elliptic curve public key cryptosystems , 1993, The Kluwer international series in engineering and computer science.

[2]  Jeffrey C. Mogul,et al.  Fragmentation considered harmful , 1987, CCRV.

[3]  Stephen E. Deering,et al.  Path MTU discovery , 1990, RFC.

[4]  Whitfield Diffie,et al.  New Directions in Cryptography , 1976, IEEE Trans. Inf. Theory.