节点文献
Kerberos协议的安全性增强方案
Scheme of enhanced security for Kerberos protocol
【摘要】 身份认证是网络安全的基础。针对s/key协议的安全缺陷,构建了基于ECC数字签名链的一次性口令认证协议EOTP。利用一次性口令认证协议EOTP和对称密钥体制AES,针对Kerberos协议的安全缺陷,给出了一个改进的Kerberos协议。经过分析对比,改进的Kerberos协议具有更好的安全性。
【Abstract】 Authentication is the basis of the network security.In order to resolve the limitations of s/key protocol,an one-time-password authentication protocol based on ECC signature chains-EOTP is put forward.Furthermore,an improved Kerberos protocol is given to overcome Kerberos protocol security flaws,which is using EOTP and AES.This protocol can eliminate the flaws which Kerberos has,and enhance the security of the application system.
【关键词】 身份认证;
一次性口令;
椭圆曲线密码体制;
数字签名链;
安全分析;
【Key words】 authentication; one-time password; ECC; digital signature chains; cryptanalysis;
【Key words】 authentication; one-time password; ECC; digital signature chains; cryptanalysis;
【基金】 国家自然科学基金项目(60271012)
- 【文献出处】 计算机工程与设计 ,Computer Engineering and Design , 编辑部邮箱 ,2009年09期
- 【分类号】TP393.08
- 【被引频次】16
- 【下载频次】186