计算机应用 ›› 2012, Vol. 32 ›› Issue (01): 30-34.DOI: 10.3724/SP.J.1087.2012.00030

• 第四届中国计算机网络与信息安全学术会议论文(CCNIS’2011) • 上一篇    下一篇

移动可信接入轻量级认证与评估协议

秦晰,高丽,常朝稳,韩培胜   

  1. 信息工程大学 电子技术学院,郑州 450004
  • 收稿日期:2011-08-03 修回日期:2011-09-11 发布日期:2012-02-06 出版日期:2012-01-01
  • 通讯作者: 秦晰
  • 作者简介:秦晰(1978-),女,河南焦作人,讲师,博士研究生,主要研究方向:信息安全、可信计算;高丽(1987-),女,河北衡水人,硕士研究生,主要研究方向:移动互联网安全;常朝稳(1966-),男,河南滑县人,教授,博士,主要研究方向:移动互联网安全、可信计算。
  • 基金资助:

    国家863计划项目(2007AA01Z479)

Lightweight authentication and evaluation protocol for mobile trusted access

QIN Xi,GAO Li,CHANG Chao-wen,HAN Pei-sheng   

  1. Institute of Electronic Technology, Information Engineering University, Zhengzhou Henan 450004, China
  • Received:2011-08-03 Revised:2011-09-11 Online:2012-02-06 Published:2012-01-01
  • Contact: QIN Xi

摘要: 为增强移动终端可信网络接入认证与评估协议的可用性,降低网络通信负载及终端计算负载,提出一种轻量级的身份认证与平台鉴别评估协议。协议基于接入双方在首次接入时共享的认证密钥以及对方的可信平台配置信息,在不需要可信第三方参与的情况下,完成快速的身份认证与鉴别评估。协议减少了网络数据交换次数以及接入双方的计算工作量,在保证接入认证与评估所需的安全属性的同时,还增强了平台配置信息的机密性以及抵抗重放攻击的能力。安全性和性能分析表明,所提协议适合无线网络通信环境下的移动终端可信网络接入。

关键词: 可信计算, 可信网络接入, 移动终端, 认证与评估

Abstract: For enhancing the usability of the authentication and evaluation protocol for mobile terminal trusted network access and reducing the overload of network communication and terminal calculation, a lightweight authentication and evaluation protocol was proposed. Depending on the authentication shared key and platform configuration information at the first access time, the both parties of communication could complete quick authentication and evaluation without trusted third party. The proposed protocol reduced the times of data switch and computing task, it not only ensured the security attributes of authentication and integrity verification, but also enhanced the privacy of platform configuring information and the ability of avoiding replay attack. The security and performance analysis shows that the proposed protocol adapts to mobile trusted access for wireless network.

Key words: trusted computing, trusted network connect, mobile terminal, authentication and evaluation

中图分类号: