作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (9): 144-145,148.

• 安全技术 • 上一篇    下一篇

安全 RADIUS 认证、授权、计费系统的构建

赵玉亭,张 治,李立欣,慕德俊,戴冠中   

  1. 西北工业大学自动化学院信息安全中心,西安 710072
  • 出版日期:2006-05-05 发布日期:2006-05-05

Construction of a Secure RADIUS Authentication,Authorization and Account System

ZHAO Yuting, ZHANG Zhi, LI Lixin, MU Dejun, DAI Guanzhong   

  1. Cyberspace Security Center, Automatic School, Northwestern Polytechnical University, Xi’an 710072
  • Online:2006-05-05 Published:2006-05-05

摘要: 构建了基于远程访问拨号接入用户服务(RADIUS)的认证、授权和计费系统。试运行表明RADIUS 原有实现方式的大运算量和频繁的文件读写操作降低了用户认证效率,且存在系统管理员盗用用户账号的风险。改进了RADIUS 实现方式,降低了认证程序实现复杂度,提高了用户认证效率,同时降低了密码泄漏风险。对于广泛采用RADIUS 的安全应用是很好的借鉴。

关键词: 远程访问拨号接入用户服务;网络安全;认证;授权;计费

Abstract: A remote access dial in user service (RADIUS) authentication, authorization and account system is constructed. Two problems emerge during the test run. One is the low authentication efficiency during the user authentication; the other is the misappropriation of user accounts by RADIUS administrators. The analysis and improvement are proposed to reduce the complexity of authentication program, enhance the user authentication efficiency and avoid the misappropriation

Key words: Remote access dial in user service (RADIUS); Network security; Authentication; Authorization; Account