检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:江为强 刘利军 王川功 黄小芹 王光涛 JIANG Wei-qiang;LIU Li-jun;WANG Chuan-gong;HUANG Xiao-qin;WANG Guang-tao(China Mobile Group Co.,Ltd.,Beijing 100033,China;China Mobile IoT Co.,Ltd.,Chongqing 401100,China;China Mobile Group Shanxi Co.,Ltd.,Taiyuan 030000,China)
机构地区:[1]中国移动通信集团有限公司,北京100033 [2]中移物联网有限公司,重庆401121 [3]中国移动通信集团山西有限公司,太原030000
出 处:《电信工程技术与标准化》2023年第11期56-61,共6页Telecom Engineering Technics and Standardization
摘 要:物联网算力网络中终端节点泛在分布,大规模泛在异构终端面临多种安全威胁。为解决泛在异构终端的安全接入问题并构建物联网算力网络终端安全保障体系,本文基于IPK轻量级标识公钥体系和零信任动态访问控制,提出了一种物联网算力网络终端安全接入方案,实现终端轻量级标识身份认证,通过最小化业务权限动态访问控制,确保只有通过严格认证和授权的终端接入物联网算力网络,保证终端业务安全访问。该方案满足了物联网算力网络终端的安全可信接入需求,可应对海量终端节点泛在分布和业务场景复杂等挑战。Large-scale heterogeneous terminals,which were dispersed throughout the internet of things computing force network,contained a variety of security vulnerabilities.This paper proposed a secure access scheme for the IoT computing force network based on lightweight identity-based public key system and zero trust dynamic access control in order to address the issue of secure access of widely distributed heterogeneous terminals and build a security system for IoT computing force network terminals.With this system,lightweight identity authentication of terminals was established.Additionally,it guaranteed that only terminals which through the tight authentication can access to the IoT computing force network and enabled secure access to services by limiting the dynamic access control of permissions.The system can address challenges with the deployment of large terminal nodes and complicated business cases,as well as the security and trusted access needs of IoT computing force network terminals.
关 键 词:物联网 算力网络 终端接入安全 标识公钥 零信任
分 类 号:TN918[电子电信—通信与信息系统]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.147