摘要
在对我国自主制定的无线局域网国家标准WAPI中WAI的安全接入过程分析的基础上,针对该协议存在终端完整性安全隐患,引入完整性度量的思想,提出基于可信平台模块(TPM)的WAI协议方案—TWAI。该方案利用TPM的本地保护和平台证实等功能来保证通信各个环节的安全可靠,并利用CK模型对其过程进行了安全性分析以及可信性分析。分析结果表明,TWAI能够实现终端完整性保护、双向实体认证等安全目标,从而增强了WAI协议运行的安全性。
WAPI is the national standard designed by China for the WLAN.On the basis of thoroughly researches on the WAI security access of WAPI,this paper proposes an improved WAI based on TPM by using integrity measurement,which is called TWAI.The scheme ensures the security and dependability of every communicating section by the functions of TPM such as local protection and platform attestation.Then this paper analyzes the security with CK model and the trustworthiness.The result indicates that TWAI can achieve the goals such as integrity protection of entitys and two-way authentication,which enhances the security of WAI.
出处
《计算机工程与应用》
CSCD
北大核心
2009年第34期78-81,共4页
Computer Engineering and Applications
基金
国家自然科学基金No.60633020
国家高技术研究发展计划(863)No.2007AA01Z438200
西安电子科技大学计算机网络与信息安全教育部重点实验室开放课题(No.2007CNIS-06)~~