期刊文献+

PKI技术增强3G安全性研究

A Study Implementation of PKI in 3G Security Architecture
下载PDF
导出
摘要 3G系统执行认证与密钥分配协议,在移动台和服务网络之间进行双向认证,在互相确认对方身份的基础上生成数据加密密钥CK和数据完整性密钥IK。3G安全体系的鉴权认证阶段是其薄弱环节,针对其缺陷,结合PKI技术,提出基于SSL握手协议的鉴权认证方案。在3G网络中加入认证中心及注册中心,用于验证用户身份、发放和恢复证书。针对无线终端特性,为服务器端使用的证书定义一个新的PKI证书格式———WTLS证书,并使用短时效证书SLC作为验证证书有效期的方案。该认证方案可以与3G现有安全模式并行,建议3G设置双模式认证方式来提高其安全强度。在无线终端侧实现了用户证书的存储管理,从而实现了加解密、数据完整性保护等各方面的功能,验证了基于SSL握手协议的鉴权认证方式是可行的。 In 3G, system implementation Authentication and Key Agreement (AKA), mobile platform and service network are authenticated in two-way. The encryption key (CK) and integrity key (IK) is produced after their identities are affirmed. The stage of security authentication of 3G is its defects. A authentication mechanism implementing PKI based SSL is put forward (to be pertinent to the defects mentioned above). In this project, PKI components-Certificates Authority (CA) and Register Authority (RA) is added into the current network of 3G which will be responsible for verifying, issuing and recovery the certification. Due to the weaker computing ability of the wireless device, a new certificate format-WTLS is defined and the Short Lived Certificate (SLC) as the method of verify certification period of validity. The project can run parallel with 3G current security model. It can be attached to the current security scheme as a choice module to enhance 3G security. A program on mobile communication device with complete function of encrypting, de-encrypting and keeping integrity of data is realized. In summary, the project of authentication mechanism implementing PKI based SSL is feasible.
出处 《中国铁道科学》 EI CAS CSCD 北大核心 2005年第6期126-130,共5页 China Railway Science
关键词 3G网络 网络安全 公钥安全体系 安全套接层协议 鉴权认证 3G network Network security Public Key Infrastructure Security Socket Layer Authentication and Key Agreement
  • 相关文献

参考文献4

  • 13GPP TS33.102 3GSecurity, Security Architecture [S].
  • 23GPP TS 33.105 3G Security, Cryptographic Algorithm Requirements [S].
  • 3张玉清 陈建奇 杨波 薛伟译.公钥基础设施(PKI)实现和管理电子安全[M].北京:清华大学出版社,2002年12月..
  • 4何健.SSL协议及其实现[J].武汉工业学院学报,2003,22(2):69-71. 被引量:2

二级参考文献3

  • 1[美]BruceSchneier.应用密码学——协议、算法与C源程序[M].北京:机械工业出版社,2000..
  • 2Freier Karlton, Kocher. The SSL ProtocoL Version 3.0[ DB/OL]. 1996.
  • 3Daris Wagner, Bruce Schneier. Analysis of the SSL 3.0 Protocol [ DB/OL] . 1997.

共引文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部