期刊文献+

基于二进制签名树的移动受信证书管理模型

Management Model for Mobile Trusted Certificates Based on Binary Signature Tree
下载PDF
导出
摘要 对目前PKI体系中的证书信任关系和用户受信证书管理进行分析,指出由于数字证书的体积问题,限制了受信根证书的移动,从而制约了移动用户网络安全事务的处理。提出基于二进制签名树的移动受信证书管理模型。利用该模型把用户的受信证书与用户的私钥和个人证书一起存储于IC卡中,使移动用户利用便携的IC卡能方便安全地建立信任关系,进行网络安全事务处理。通过对移动受信证书管理模型存储计算和受信证书验证计算分析,该模型具有较小的存储体积和受信证书验证计算量。 By analyzing the certificates trust relationship and trusted certificates management of present public key infrastructure (PKI) system, it is learnt that the size of digital certificate restricts the mobile of trusted root certificates and further restricts the network affairs of mobile users. A mobile trusted certificates management model based on binary signature tree is presented. Using this model, the user trusted certificates, private key and personal certificate are integrated into one IC card, which makes people set up trust relationship securely and conveniently in traveling. By analyzing the storage computation and trusted certificates verification computation of mobile trusted certificates management model, we know the model have little size and light computation.
出处 《中国铁道科学》 EI CAS CSCD 北大核心 2005年第3期124-127,共4页 China Railway Science
基金 通信与信息系统北京市重点实验室资助项目(SYS100040408)
关键词 网络安全 移动信任 移动受信证书 二进制签名树 Management Mathematical models Networks (circuits) Public key cryptography Security of data Storage (materials) Trees (mathematics)
  • 相关文献

参考文献6

  • 1Andrew Nash, William Duane, Celia Joseph, et al. PKh Implementing and Managing E-Security[M]. New York: McGraw-Hill Education, 2001: 57-121.
  • 2Housley R, Ford W, Polk W, et al. RFC 2459-Internet X. 509 Public Key Infrastructure Certificate and CRL Profile[EB/ OL]. http://www. rfc-editor. org/rfc/rfc2459. txt, 1999.
  • 3Perlman R. An Overview of PKI Trust Models[J]. IEEE Network, 1999, 13(6): 38-43.
  • 4William Stallings. Cryptography and Network Security: Principles and Practices(Third Edition)[ M]. Amsterdam: Pearson Education, 2004:188-203; 258-281.
  • 5William C Cheng, Cheng-Fu Chou, Leana Golubchik. Performance of Batch-based Digital Signatures[A]. 10th IEEE Inter national Symposium on Modeling, Analysis, and Simulation of Computer and Telecommunications Systems (Mascots 2002)[C]. Los Angeles: IEEE Computer SOC, 2002: 291-299.
  • 6Merkle R C. A Certified Digital Signature[A]. Advances in Cryptology (CRYPTO89) [C]. Berlin: Springer-Verlag, 1989: 234-246.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部