摘要
身份认证和访问控制是Internet应用的重要方面,传统的实施方案通常适用于具体应用,也不能用于普适计算环境下的移动终端。文中提出了一个新的访问控制模型,该模型利用了IETF定义的主机标识协议(HIP),并扩展了HIP基本交换过程来实现对用户的认证,这样,也实现了客户端主机标识和用户标识的绑定认证,建立主机和用户的绑定关系。
Identity authentication and access control are the most important aspects of Internet applications. The traditional implementation schemes are generally application-specific, and not suitable for roaming terminals in a pervasive computing environment. This paper presents a new access control model, which utilizes the Host Identity Protocol (HIP) being defined by IETF, and extends HIP Basic exchange in order to achieve authentication of user identity. Thus, the binding-authentication of the Host Identity and User Identity of the client is achieved, and a bound relationship built between the host and user.
出处
《通信技术》
2008年第9期187-189,共3页
Communications Technology
关键词
互联网
访问控制
安全
主机标识协议
Internet
access control
security
host identity protocol