摘要
根据可信计算领域中对身份认证的要求,提出一种基于TPM的强身份认证协议。介绍可信平台模块架构,给出其支持的密钥类型,按照进程理论建立协议模型,阐述协议扩展方案,包括引入PCR挑战、实现跨平台认证,并采用网络开发技术加以实现。实验结果表明,该协议可有效对用户身份进行验证。
In terms of the requirement of ID authentication in trusted computing filed, this paper proposes a Trusted Platform Module(TPM)- based strong ID authentication protocol. TPM is reviewed as well as the types of keys supported and their relationship. A mathematical model of the protocol using the formal method of process theory is designed. The extension of the protocol is discussed, including Platform Configuration Register(PCR) challenging and implementing platform independence. An application scenario of the protocol by network development technology is implemented. Experimental results show the protocol can authenticate users' ID effectively.
出处
《计算机工程》
CAS
CSCD
2012年第4期23-27,共5页
Computer Engineering
基金
国家自然科学基金资助项目(60903020
60903189
60773094)
国家"863"计划基金资助项目(2008AA01Z403)
上海市曙光计划基金资助项目(07SG32)
关键词
可信平台模块
数字签名
公钥加密
JAVA平台
Trusted Platform Module(TPM)
digital signature
public key encryption
Java platform