摘要
随着敏感、机密信息通信的普通化,信息的安全性成为人们关注的焦点,密钥的安全管理是加密信息安全的关键因素。针对现有PKI体系中密钥管理机制的缺陷和目前面临的难题,提出了一种在密钥生成、托管和恢复过程中由用户、n个托管机构、CA共同协作完成的改进方案。该方案能够验证用户托管密钥的真实性并能很好的保护用户私钥的机密性。
With the general communication of sensitive and confidential information, information security becomes the focus of people's attention. The security of key management is the crucial factor of encrypted information. Considering the current problems and defects in the PKI key management mechanism, the paper raises an improved scheme which involves the collaboration of user, n -escrow institutions and CA in the process of key generation, escrow and recovery. The scheme can verify the authenticity of the escrowed key and protect the confidentiality of the private key.
出处
《商业研究》
CSSCI
北大核心
2008年第7期6-9,共4页
Commercial Research
基金
国家自然科学基金:70472005
江苏省高校自然科学研究计划项目,项目编号:06KJD520058