摘要
目前信息系统对安全的要求越来越高,要求身份认证系统必须提供三个要素:一是身份认证,二是不可抵赖性,三是信息的完整性。对于要求基于生物特征识别的信息系统,其着重点就在于对用户真实的物理身份的确认。但是对于信息系统来说,必需基于密码运算处理,才能满足信息系统的信息完整性要求、不可抵赖性要求。生物特征识别与密码结合是认证技术发展的趋势,也是未来新型认证系统必需具有的特点。文中对一种新型的基于生物特征与密码相结合的认证技术进行了研究。提出了基于生物认证基础架构(BAI)、XML、BioAPI的认证系统框架。
At present, The information system requires an even higher information security, and the identity authentication system must provide three essential factors: the first is identity authentication, the second Nonrepudiation, and the third data integrity. As for the information system demanding biometric-based authentication, its stress lies in the confirmation of user' s real physical identity. However, the information system must be based on cryptographical operation and processing, thus data integrity and nonrepudiation of the information system could be satisfied. The incorporation of biometrics and cryptography is the development trend of authentication technology, and also the essential feature of the future authentication system. This article discusses a novel authentication technology based on incorporation of biological characteristic and cryptography, proposes a kind of authentication system frame based on biometrics authentication infrastructure (BAI), XML, and BioAPI.
出处
《信息安全与通信保密》
2009年第8期175-178,182,共5页
Information Security and Communications Privacy