摘要
重点研究了不同身份标志域中用户与服务提供者之间的信任关系建立问题,提出了基于可信移动平台的移动身份管理框架。将可信移动平台提供的可信引导、远程平台证明和可信票据机制集成到框架中以建立不同身份标志域间的信任关系。由于移动平台的计算和存储能力有限,该框架协议呈现了服务器完成了大部分计算的不平衡特征。该框架以用户为中心并抵抗各种攻击,增强了安全性能。
This paper focused on building trust relationship between users and service providers in different domains. Proposed a framework for mobile identity management based on the trusted mobile platform. Integrated the mechanisms of trusted booting and remote platform attestation provided by trusted mobile platform into the framework to build the trust relationship among different identifier domains. Since the limited computing and storage capacity of the mobile platform, the protocol in this frame- work is characteristic of unbalance with the servers doing most of the computations. This framework is nser-centrie with enhanced security against various attacks.
出处
《计算机应用研究》
CSCD
北大核心
2009年第1期321-324,共4页
Application Research of Computers
基金
国家“863”计划资助项目(2006AA01Z440,2007AA01Z40)
关键词
身份管理
身份标志域
可信移动平台
信任关系
identity management
identifier domain
trusted mobile platform
trust relationship