摘要
智能卡COS是智能卡中重要的软件控制部分,它控制着智能卡内外部的数据通信和存储。智能卡COS的安全性是信息化应用健康有序进展的重要基础,因此,必须对智能卡COS进行科学全面的测试评价。文中首先描述了智能卡COS的组成结构;然后分析了智能卡COS需要保护的信息资产及其面临的安全威胁,在此基础之上,提出智能卡COS在软件设计实现中需要考虑的安全机制,阐明如何构建智能卡COS安全性测试评价平台;最后,重点从安全功能测试和穿透性测试两个方面阐述了智能卡COS安全测试的关键技术。
Smart card COS is an important software control part, which controls the smart card data communication and storage. Security of smart card COS is an important basis for the healthy and orderly development of information application, therefore, smart card COS must be tested comprehensively. Firstly, describe the structure of smart card COS. Then analyze information assets need to protect and security threat and risks of smart card COS. On the basis,propose security mechanisms need to be considered in the state of design and development of smart card COS, discuss the way to build the platform of security test and evaluation of smart card. At last, analyze the key technology of security test and evaluation of smart card from security function test and penetration test.
出处
《计算机技术与发展》
2014年第2期164-167,171,共5页
Computer Technology and Development
基金
国家质检公益性行业科研专项经费(201310033)