摘要
本文针对GSM移动通信系统的安全缺陷 ,提出了一种基于证书的安全认证模型 ,并设计了基于证书的移动通信安全协议 .该模型将IP网络的CA认证技术引入到无线网络 ,并对经典PKI进行了改进 ,将身份认证和访问授权进行了区分 ,实现了密钥和持有人的 1:n关系 ,并支持匿名访问 .通过实验证明了证书模型解决移动通信安全性的可行性 .
In order to overcome the security weakness of the GSM system,this paper presents an authentication model and security protocols based on certificates.The new model introduces the CA technology of IP network into the mobile communication systems.It improves on classical PKI,distinguishes access authentication from identification,implements the 1:n relationship between keyholder and keypair,also it supports anonymous access.In addition,the feasibility of using certificate model in the mobile communication system is verified by some tests.
出处
《电子学报》
EI
CAS
CSCD
北大核心
2002年第6期868-871,共4页
Acta Electronica Sinica
关键词
认证模型
移动通信
认证中心
身份证书
授权证书
GSM
mobile communication system
certification authority
identification certificate
authorization certificate