期刊文献+

一种增强WAPI安全性的改进方法 被引量:4

An Improved Method for Enhancing the Security of WAPI
下载PDF
导出
摘要 WAPI是中国无线局域网国家标准GB 15629.11中提出的用来实现无线局域网鉴别和加密的机制。文章介绍了WAPI标准产生的背景和工作原理,分析指出了中国无线局域网国家标准WAPI在身份认证和密钥协商过程存在的安全缺陷,并针对文中提出的缺陷做出相应的改进。身份认证过程中,改进的方案不仅认证用户证书的合法性,还认证用户是否拥有对应的私钥;在密钥协商阶段,将密钥交换协议——MTI应用到密钥交换过程,提高了密钥交换的密码学安全性。文章列出改进的WAI鉴别基础结构关键交互过程,并给出了详细的安全性分析。文章在改进的WAPI基础上,提出了一种结合独立安全介质(手机为SD-Key、PAD为USBKey)的移动终端方案。相对于原国家标准,改进的WAPI安全性有了很大提升。文章提出的增强移动终端方案对提高WAPI标准产品化过程中的安全性有较大借鉴意义。 WAPI is an authentication and encryption security protocol of GB 15629.11,the Chinese WLAN standard. This paper introduces the background and working principle of WAPI standard,analyzes the WAPI security defects in the process of identity authentication and key agreement,and improves the defects above. In the process of identity authentication,the new protocol not only authenticate the legitimacy of user certificate,but also authenticate the user has the corresponding private key; in the process of key agreement,the new protocol apply key exchange protocol——MTI to the key exchange process,and improve the safety of key exchange. This paper lists the key process of the improved WAI identity authentication interaction,and gives the security analysis. On the basis of the improved WAPI,we put forward a mobile terminal solution taking advantage of the independent security medium(mobile phone using SD-Key as security medium,PAD using the USB-Key as security medium). Compared with the national standard,modifi ed WAPI has been greatly improved in terms of safety. In the standardization of WAPI products,the enhanced mobile terminal solutions proposed in this paper has great reference signifi cance to improving the WAPI standard security.
出处 《信息网络安全》 2015年第8期47-52,共6页 Netinfo Security
基金 国家自然科学基金[61103210] 中央高校基本科研业务费专项资金[2015XS1-LB 2820154]
关键词 WAPI 身份认证 密钥协商 独立安全介质 移动终端 WAPI identity authentication key agreement independent security medium mobile terminal
  • 相关文献

参考文献12

二级参考文献56

共引文献48

同被引文献36

引证文献4

二级引证文献19

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部