摘要
提出了一种用信息隐藏技术代替加密技术来实现的移动终端认证方案,以图像作为信息隐藏的载体,借鉴Kerberos[1]认证协议中相互认证的思想,实现了移动终端身份认证。在认证过程中使用了隐写术[2]和数字水印[3],前者用于认证信息的传递,后者保证认证图像的唯一性,同时实现各服务器之间的身份认证。二者相辅相成,更好地保证了认证信息的隐蔽与安全。针对于Kerberos系统中可能会发生的重放攻击,文中采用时间戳连同协商随机数的方法得以解决。
A mobile terminal authentication scheme based on information hiding technology instead of encryption technology is put forward.In this scheme,the image is used as the carrier of information hiding,and the authentication of the mobile terminal is realized by using the mutual authentication of Kerberos authentication protocol.In the authentication process,steganography and digital watermarking are used.The former is used to transfer the authentication information,the latter is to ensure the uniqueness of the authentication image,and to realize the authentication between the servers.The two complement each other,to ensure that the certification of information security and security.For the replay attack that may occur in the Kerberos system,this paper adopts the method of the time stamp and the random number.
出处
《信息技术》
2017年第12期158-160,167,共4页
Information Technology
关键词
身份认证
信息隐藏
移动终端
KERBEROS
隐写术
数字水印
identity authentication
inlo rmation hiding
mobile terminal
Ker beros
steganog raphy
digital watermarking