作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (8): 126-129. doi: 10.3969/j.issn.1000-3428.2010.08.044

• 安全技术 • 上一篇    下一篇

通用可组合安全的可信网络接入与认证协议

王佳慧,吴振强   

  1. (陕西师范大学计算机科学学院,西安 710062)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2010-04-20 发布日期:2010-04-20

Universally Composable Security Access and Authentication Protocol for Trusted Network

WANG Jia-hui, WU Zhen-qiang   

  1. (College of Computer Science, Shaanxi Normal University, Xi’an 710062)
  • Received:1900-01-01 Revised:1900-01-01 Online:2010-04-20 Published:2010-04-20

摘要: 可信计算组织提出的可信网络连接框架规范无法安全高效地支持未来移动计算和普适计算等应用场景,针对该问题,在完整性验证中采用服务器和客户端的双向认证方法,提出一种可信网络接入与认证协议,提高通信安全性和可靠性。在身份认证时采用对称密钥算法,减少服务器和客户端的加解密运算时间,提高通信效率。使用安全等级较高的通用可组合安全框架对协议进行分析,结果表明该协议达到通用可组合安全等级。

关键词: 通用可组合安全, 仿真器, 理想函数, 完整性

Abstract: Aiming at the problem that trusted network connect frame specification proposed by Trusted Computing Group(TCG) can not support the applicaition scene of future mobile computing and ubiquitous computing safely and effectively, this paper uses two-way authentication method between server and client during integrity validation and presents a trusted network access and authentication protocol. Symmetric key algorithm is used in the authentication to reduce encrypt time and decrypt time of server and client, and to improve the communication efficiency. It uses a universally composable security framework to analyze the protocol. Results show that this protocol reaches the level of universally composable security.

Key words: universally composable security, simulator, ideal function, integrity

中图分类号: