@article{1264, author = {Ahmim marwa, Babes malika, Ghoualmi nacira}, title = {Contribution to Enhance IPSec Security by a Safe and Efficient Internet Key Exchange Protocol}, journal = {Journal of Information Security Research}, year = {2013}, volume = {4}, number = {3}, doi = {}, url = {http://www.dline.info/jisr/fulltext/v4n3/2.pdf}, abstract = {IPSec is a suite of protocols that provides security for internet communications at the IP layer. The security properties of IPSec mainly depend on the key exchange protocols where the efficiency and security of the key management are important parts of IPSec. Internet Key Exchange (IKE) protocol is the most common mechanism for the two hosts to exchange key materials. However, IKE is complex and vulnerable due to attacks such as (DOS, Replay and Man in the middle). In this paper, we propose a new IKE protocol based on D-H. This protocol uses three round-trips the exchange message. The advantages of our contribution are: one phase (vs. two phases on standard IKE), Best efficiency ie. optimizes transmission time (vs. longer negotiation time). The security analysis and formal verification using Automated Validation of Internet Security Protocols and Applications (AVISPA) show that our contribution can resist to various attack types such as ( Replay, DOS, man in the middle). We compare our IKE with other IKE protocols; the proposed protocol is more secure with less computation complexity.}, }