摘要
身份认证是网络安全的基础。针对s/key协议的安全缺陷,构建了基于ECC数字签名链的一次性口令认证协议EOTP。利用一次性口令认证协议EOTP和对称密钥体制AES,针对Kerberos协议的安全缺陷,给出了一个改进的Kerberos协议。经过分析对比,改进的Kerberos协议具有更好的安全性。
Authentication is the basis of the network security.In order to resolve the limitations of s/key protocol,an one-time-password authentication protocol based on ECC signature chains-EOTP is put forward.Furthermore,an improved Kerberos protocol is given to overcome Kerberos protocol security flaws,which is using EOTP and AES.This protocol can eliminate the flaws which Kerberos has,and enhance the security of the application system.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第9期2124-2126,共3页
Computer Engineering and Design
基金
国家自然科学基金项目(60271012)