电信科学 ›› 2014, Vol. 30 ›› Issue (4): 95-99.doi: 10.3969/j.issn.1000-0801.2014.04.014

• 研究与开发 • 上一篇    下一篇

混合云联合身份认证与密钥协商协议设计

王崇霞1,高美真2,刘倩3,周贤伟3   

  1. 1 长治学院计算机系 长治 046010
    2 焦作师范高等专科学校计算机与信息工程学院 焦作 454000
    3 北京科技大学计算机与通信工程学院 北京 100083
  • 出版日期:2014-04-15 发布日期:2017-06-29
  • 基金资助:
    国家自然科学基金资助项目;教育部科学技术研究重大基金资助项目

Design of United Identity Authentication and Key Agreement Protocol for Hybrid Cloud

Chongxia Wang1,Meizhen Gao2,Qian Liu3,Xianwei Zhou3   

  1. 1 Department of Computer Science, Changzhi University, Changzhi 046010, China
    2 School of Computer and Information Engineering, Jiaozuo Teachers College, Jiaozuo 454000, China
    3 School of Computer and Communication Engineering, University of Science and Technology Beijing, Beijing 100083, China
  • Online:2014-04-15 Published:2017-06-29

摘要:

针对混合云中用户群不同,认证机制不一致的特点,基于双线性对和密钥协商机制,提出了一种混合云联合身份认证和密钥协商协议,实现了混合云用户身份认证和授权策略等安全信息的分布式管理与动态获取。通过理论分析和实验证明,该协议具有安全高效的特点,可以有效预防篡改数据、伪造用户身份、重放和中间人攻击等,且以较小的计算量和通信开销,为混合云联合身份认证和密钥协商提供了一种较实用的解决方案。

关键词: 混合云, 身份认证, 双线性对, 安全性

Abstract:

Aiming at the heterogeneous users and the inconsistent authentication mechanism for hybrid clouds, a design of united identity authentication and key agreement protocol for hybrid cloud was proposed based on bilinear pairings and key agreement mechanism, which could realize the distributed management and dynamic acquisition of security information of authentication and authorization policy. The theoretical analysis and experiment results show that the proposed protocol is safe and efficient, which can effectively prevent data tampering, identity forging, replay attacks and man-in-the-middle attacks. Else the proposed protocol provides a practical solution on identity authentication and key agreement in hybrid clouds with less computation and communication overheads.

Key words: hybrid cloud, identity authentication, bilinear pairing, security

No Suggested Reading articles found!