节点文献

一种适合远程访问场景的认证和密钥交换方案

An Efficient Asymmetric Authentication and Key Exchange Scheme

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 叶润国虞淑瑶冯彦君吴宇

【Author】 YE Runguo1,2,3,YU Shuyao1,2,3,FENG Yanjun1,2,3,WU Yu1,2,3(1.Computer Network Information Center,CAS,Beijing 100080;2.Institute of Computing Technology,CAS,Beijing 100080;3.Graduate School of the Chinese Academy of Sciences,Beijing 100039)

【机构】 中国科学院网络信息中心中国科学院网络信息中心 北京100080中国科学院计算所北京100080中国科学院研究生院北京100039

【摘要】 提出了一种基于基本ECMQV协议的非对称式认证和密钥交换方案AEAS,可实现对客户端的口令认证和对服务端的公钥认证;AEAS中的客户端口令认证具有零知识安全属性,允许用户使用弱口令,并能抵御各种字典攻击和重放攻击;与同类非对称认证和密钥交换方案相比,AEAS具有最少的公钥计算开销。AEAS协议能集成到现有WTLS协议框架中,从而实现一种高安全性和低计算开销的WTLS扩展,它完全可满足无线终端在企业远程访问场景下的高安全性要求。

【Abstract】 An ECMQV-based asymmetric authentication scheme is proposed,which enables client authentication with memorable passwords and server authentication with conventional certificates;the client password authentication possesses zero-knowledge-proof security property,which allows using weak passwords;implicit authentication is used to validate server-side entity,which greatly cuts down client computation overhead.AEAS can be integrated into current WTLS framework,resulting in a WTLS extension with higher security and lower computation overhead,which mets wireless terminals’ high-security requirements under enterprise remote access scenario.

【关键词】 网络安全密钥交换方案ECMQVWTLS
【Key words】 Network securityKey exchange schemeECMQVWTLS
【基金】 国家“863”计划基金资助项目(2001AA112040,2001AA112136)
  • 【文献出处】 计算机工程 ,Computer Engineering , 编辑部邮箱 ,2006年06期
  • 【分类号】TP393.08
  • 【下载频次】112
节点文献中: 

本文链接的文献网络图示:

本文的引文网络