节点文献
基于生物特征识别的多因子身份认证即服务研究与应用
Study and Application of Multifactor Identity as A Service Base on Biometric Feature Recognition
【作者】 徐静;
【作者基本信息】 华南理工大学 , 工程硕士(专业学位), 2018, 硕士
【摘要】 随着互联网和云计算技术的不断发展,使得网络上存在着大量敏感的商业、政府、军队、企业的敏感信息,这些信息只有得到授权的人才能进行访问,因此身份认证作为信息安全的一种重要手段越来越受到人们的重视。但目前各企业主要基于静态密码的方式作为身份认证主要途径,存在泄漏和传输过程中被截取的风险,导致信息安全问题日益严峻。同时由于生物识别具有唯一防伪等特点被广泛引用到身份认证的领域,本文将结合某集团身份认证的现状,利用云计算、生物识别等新技术和思想实现新的认证体系,主要研究内容如下:1、从国家信息安全形势、身份认证发展趋势、生物识别应用现状等方面研究身份认证的背景与意义;2、研究本文中涉及到的相关技术原理及应用情况,并重点说明研究的部分;3、调研身份认证现状并提出相关的需求分析;4、根据以上调研设计身份认证服务总体架构和关键业务架构;5、根据设计部署和实验,验证关键功能。通过整体研究和验证,将生物识别、FIDO、Auth2.0整合成基于混合云的IDaaS服务,实现多因子身份认证,作为身份认证的最佳实践方案。
【Abstract】 With the continuous development of the Internet and cloud computing technology,there are a large number of sensitive business,government,military and enterprise information on the network,which can only be accessed by authorized people.Therefore,identity authentication as an important means of information security has attracted more and more attention.But at present,the main way of identity authentication is based on static password.There are risks of leakage and interception in the process of transmission,which leads to the increasingly serious problem of information security.At the same time,because biometrics has unique anti-counterfeiting characteristics and is widely used in the field of identity authentication,this paper will combine the status quo of a group identity authentication,using new technologies and ideas such as cloud computing,biometrics to achieve a new authentication system.The main research contents are as follows:1.To study the background and significance of identity authentication from the aspects of the national information security situation,the development trend of identity authentication and the application status of biometrics.2.Study the relevant technical principles and applications involved in this paper,and focus on the part of the study.3.Investigate the status quo of enterprise unified certification and put forward relevant needs analysis.4.Designing the overall architecture and key business architecture of identity authentication services based on the above research.5.Verify the key functions according to the design,deployment and experiment.Through the overall research and verification,biometric,FIDO and Auth2.0 are integrated into IDaaS services based on mixed clouds to achieve multifactor identity authentication as the best practice scheme for identity authentication.
【Key words】 IDaaS; FIDO; Single Sign On; Biometric Recognition; Multifactor authentication;
- 【网络出版投稿人】 华南理工大学 【网络出版年期】2019年 05期
- 【分类号】F274;TP309
- 【被引频次】4
- 【下载频次】344