一种基于混合加密的移动代理安全传输模型
A Secure Transport Model of Mobile Agent Based on Hybrid Encryption
-
摘要: 该文分析了目前移动代理系统存在的主要安全问题及现有的解决方案,随后提出了一种基于混合加密的移动代理安全传输模型(HESTM)。该模型主要分成两部分: (1)利用混合加密算法加密移动代理;(2)利用TLS加密通信信道。仿真与性能分析表明,HESTM模型的确能有效地保护移动代理的传输安全,从而有效地提高了整个系统的安全性和稳健性。该箅法已成功地应用在作者开发的原型系统-基于移动代理的入侵检测系统中。
-
关键词:
- 移动代理; 传输层安全; 混合加密
Abstract: This article analyzes the main security problems that current mobile agent sys-tems face with and existing solving methods, then a secure transport model of mobile agent based on hybrid encryption HESTM is brought forward. The model comprises two parts: (1) Using hybrid encryption encrypt mobile agent; (2) Using TLS encrypts communication channel. The simulation and performance analysis show that HESTM can eiRciently pro-tect the transport security of mobile agent indeed, thus enhance the security and robustness of the whole system. This algorithm has been successfully applied in authors developed prototype-mobile agent based intrusion detection system. -
王汝传,郑晓燕.移动代理技术及其在电子商务中的应用研究.南京邮电学院学报,2001,21(2):80-81. [2]Fritz Hohl. A protocol to detect malicious hosts attacks by using reference states. Technical Report Nr.09/99, Faculty of Informatics, University of Stuttgart, Germany, 1999.[3]Giovanni Vigna. Cryptographic Traces for Mobile Agents, Mobile Agents and Security, Berlin:Springer-Verlag, 1998, LNCS 1419: 137-153. [4]Fritz Hohl. Time Limited Blackbox Security: Protecting mobile agents from malicious hosts,Mobile Agents and Security, Berlin: Springer-Verlag, 1998, LNCS 1419: 92-113. [5]UWE G. Wilhelm, Sebastian M. Staamann, Levente Buttyan. A pessimistic approach to trust in mobile agent platforms. IEEE Internet Computing, 2000, 4(5): 40-48. [6]Dierks T, Allen C. The TLS Protocol. IETF, January 1999. [7]陈鲁生,沈世镒.现代密码学.北京:科学出版社,2002:53-66. [8]赖溪松,韩亮,张真诚.计算机密码学及其应用.北京:国防工业出版社,2001:84-106. [9]Garms J,Somerfield D.Java安全性编程指南.北京:电子工业出版社,2002:48-272. [10]Sander T, Tschudin C F. Towards mobile cryptography. Proceedings of the IEEE Symposium on Security and Privacy, Oakland, CA, May 1998: 215-224. [11]张云勇.移动agent及其应用.北京:清华大学出版社,2002:46-53. -
计量
- 文章访问数: 2490
- HTML全文浏览量: 135
- PDF下载量: 828
- 被引次数: 0