可信计算环境下基于主机身份的一次性密钥交换协议
doi: 10.3724/SP.J.1146.2005.01542
A Host Identity Based One-Time Key Exchange Protocol in Trusted Computing
-
摘要: 该文介绍了可信计算环境下可信网络连接的基本概念,分析了TNC协议扩展存在的问题,介绍了直接匿名证明DAA协议。提出了一种新的,基于主机身份的一次性密钥交换协议I-OKEP,并分析了其安全性。经安全性分析证明,该协议可以在可信计算环境下保证密钥交换的机密性与可靠性,同时还可以保证主机完整性与主机匿名性。Abstract: The conception of Trusted Network Connection (TNC) is introduced, and the problem of TNC protocol extend is analyzed. Direct Anonymous Attestation(DAA) protocol is descripted. After this, the paper takes out a new host Indentity based One-time Key Exchange Protocol(I-OKEP), and analyzes its security character. The security analysis can prove that the protocol can ensure the confidentiality and reliability of key-exchange, and the integrity and anonymous of host in trusted computing environments.
计量
- 文章访问数: 3224
- HTML全文浏览量: 106
- PDF下载量: 1040
- 被引次数: 0