节点文献
基于公钥的Kerberos分布式认证方法研究
Public-Key Based Kerberos in Distributed Authentication
【摘要】 文章描述了在Kerberos票据框架中,应用公钥密码体制实现分布式认证的三种方法。分析了三种协议(PKINIT,PKCROSS和PKDA)的不同安全认证过程,找出了它们基于公钥的“把繁重的分布式认证工作分配到通信各方”的共性,实现了一个较Kerberosv5使用范围更广、安全性更强的方法。同时,客户方的隐私一样得到了保护,从而,补充扩展了基于公钥的Kerberos安全认证。
【Abstract】 In this work we describe three methods for fully distributed authentication using public key cryptography within the Kerberos ticket framework.By analysing the protocols of PKINIT,PKCROSS and PKDA based on public-key cryptography,we find a way to enhance secerity and scalability in distributed realm as compared to Kerberos V5 by distributing most of the authentication workload away from the trusted intermediary and to the communicating parties.Privacy of Kerberos clients is also enhanced.
【关键词】 Kerberos分布式;
密钥分配中心;
公钥加密算法;
扩展;
【Key words】 Kerberos; distribution PDC; public key-based; extension;
【Key words】 Kerberos; distribution PDC; public key-based; extension;
【基金】 国家973基础研究规划资助项目(编号:G20000263)
- 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2006年04期
- 【分类号】TN918.1
- 【被引频次】19
- 【下载频次】245