基于隧道技术的移动路由系统为车地通信问题提供了全新的解决思路。为了保障该路由系统的安全性,达到对用户上网行为可控可管的目标,提出移动路由系统中认证机制的设计需求。通过对该路由系统原理和体系结构的分析,结合其软硬件条件,给出一种高效且易实现的认证机制。综合使用Linux下的Netfilter/iptables、PHP和MySQL等多种工具,加以实现。最后,搭建拓扑对该认证机制进行测试,验证了该认证机制能够很好地满足需求。
The mobile routing system based on tunnel technology provides a new solution to solve the communication problem between train and ground. In order to protect the system security,making the user's online behavior controllable and manageable,this paper proposes the needs of authentication mechanism. By analyzing the principle of the routing system,software and hardware conditions,this paper gave an efficient and easy implementation to authentication mechanism,and realized it with Netfilter /ipatbles,PHP,My SQL,and other tools under Linux. At last,a topology had been built and the authentication mechanism was tested,clearly showing that the mechanism could work well and satisfy the design needs.