检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]河南工业职业技术学院计算机工程系,河南南阳473009 [2]西安工业大学计算机科学与工程学院,西安710032
出 处:《计算机应用研究》2014年第6期1856-1859,1873,共5页Application Research of Computers
摘 要:已有的虚拟企业交互认证方案无法实现多策略认证,并且有些不能抵抗合谋攻击,有些不具备可追查性,有些将盟主放在主导地位,易形成安全瓶颈和效率瓶颈。为此,提出了一个具有可追查性的抗合谋攻击多策略虚拟企业交互认证方案,并进行了安全性分析和性能对比。方案通过改变门限值t实现多策略证书颁发;通过增加成员的固有公私钥对,实现抗合谋攻击;通过构建身份追查数据库及有效的身份追查协议,实现签名成员身份的可追查性;方案还能对部分签名进行验证。分析表明,该方案在具备现有方案各种安全性能的基础上,还具有多策略认证、抗合谋攻击能力、身份可追查性、部分签名可验证性,因此能够适应于更加广泛的应用领域。There were several preliminary interactive authentication schemes for virtual enterprise(VE),but none of them could realize multi-policy authentication,and some couldn't resist conspiracy attacks,some couldn't trace the members' identities,some easily formed safety bottleneck and efficiency bottleneck as it put the leader on the dominant position.To solve these problems,this paper proposed a multi-policy novel conspiracy attack immune interactive authentication scheme for VE with traceability.The new scheme realized multi-policy authentications by using different threshold value t,obtained the conspiracy attack immune property by introducing signers' inherent public keys and secret keys,and realized the traceability by constructing identity tracking database and effective identity tracking protocol,meanwhile the new scheme could verify the correctness of partial signatures.Analysis shows that the new scheme is more secure as its multi-policy authentication,resisting conspiracy attack,traceability,partial signatures verifiability,so it is suitable for more application fields.
关 键 词:虚拟企业 虚拟认证中心 多策略 合谋攻击 可追查性
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.63