摘要
利用通信双方密码设备的身份特征和共享密钥,提出了一种基于身份认证的密钥协商模型,采用与时间戳机制相绑定的分组密码算法、杂凑算法加密体制,定义了密码设备进行密钥协商的工作流程,按此流程进行双方通信密钥的按需协商以及共享密钥的实时有效更新,保证了密钥协商过程的机密性、完整性、防重放性和不可预测性,为某些应用模式下密码设备的安全密钥交换提供了一种有效实用的技术手段。
With the identity features and sharing keys of both the communication parties' crypto equipments, a key agreement model based on identity authentication is proposed. With ciphering systems of block crypto algorithm bound with time stamp and harsh algorithm, the working flow of key agreement of crypto equipments is defined, and with this flow, the on-demand agreement of both parties' communication key and the real-time update of sharing key are realized, thus to guarantee the confidentiality, integrity, anti-replay and unpredictability of the key agreement process and provide an effective technical means for secure key exchange of crypto equipments in certain application mode.
出处
《信息安全与通信保密》
2012年第12期116-117,120,共3页
Information Security and Communications Privacy
关键词
身份认证
密钥协商
时间戳
identification authentication
key negotiation
timestamp