摘要
为了克服现有基于属性证书的远程证明方案在隐私保护和安全性方面的不足,文中提出了一种基于隐藏证书技术的属性远程证明方案(HCP-RA),该方案在传统基于属性的远程证明的基础上引入了隐藏证书技术,实现了对机密性证书和策略的保护,同时实现了验证方和被验证方之间的双向可信性验证功能。文中首先给出了HCP-RA模型,随后针对该模型给出了形式化描述和相应的远程证明协议,并通过应用实例来说明该协议的具体工作过程。与传统的基于属性证书的远程证明技术相比较,该方案在隐私保护方面具有很大优势;双向可信性验证提高了传统单向属性远程证明的安全性。
For the defects of privacy protection and security in the Property Based Remote Attestation,an improved remote attestation method is given.This method is based on Hidden Credential technology named as HCP-RA(Hidden Credentials supported Property based Remote Attestation).The endpoints of communication in this model verify the trusted character of each other.After given the model of HCP-RA,formalized description and protocol of this model are given.In order to descript the message transformation process,an example of this protocol is given.Compare with the Property Based Remote Attestation in nowadays,HCP-RA has advantages in privacy and policy protection.Bidirectional creditability verification improves the environment's security.
出处
《实验科学与技术》
2012年第1期47-51,共5页
Experiment Science and Technology
关键词
远程证明
可信计算
隐藏证书
证明策略
remote attestation
trusted computing
hidden credentials
attestation policy