首页|无线移动网络跨可信域的直接匿名证明方案?

无线移动网络跨可信域的直接匿名证明方案?

Direct Anonymous Attestation Scheme in Cross Trusted Domain for Wireless Mobile Networks

扫码查看
基于信任委托的思想,提出一种移动环境下的跨可信域的直接匿名(direct anonymous attestation,简称DAA)证明方案,采用代理签名技术和直接匿名证明方法,实现对移动终端在多可信域之间漫游时的可信计算平台认证,并在认证过程中协商会话密钥,增强了远程证明体系的安全性。利用 Canetti-Krawczyk(CK)模型对方案的认证协议的认证安全性和匿名安全性进行了形式化分析和证明。分析表明,该方案能够抵抗平台伪装攻击和重放攻击,其性能适用于无线网络环境。
Based on delegation of trusted relationship, a ross-domain direct anonymous attestation scheme for wireless mobile networks is proposed. A proxy signature is used for delegation among domains, and the direct anonymous attestation (DAA) method is used for mobile terminal authentication when a terminal roaming to another domain. The remote attestation system is security-enhanced by a key agreement. The authentication protocol is analyzed in Canetti-Krawczyk (CK) model, and the results show that the protocol is secure. Further analysis shows that this proposal can resist reply attacks and platform masquerade attacks; the scheme is effective and suitable for the mobile trusted computing platforms.

direct anonymous attestationcross trusted domaindelegationproxy signatureauthentication

杨力、马建峰、姜奇

展开 >

西安电子科技大学 计算机学院,陕西 西安 710071

计算机网络与信息安全教育部重点实验室 西安电子科技大学,陕西 西安 710071

直接匿名证明 跨可信域 信任委托 代理签名 认证

U113500261072066,61100230,61100233,611731352011ZX03005-002JY10000903001, K50510030003

2013

软件学报
中国科学院软件研究所,中国计算机学会

软件学报

CSTPCDCSCD北大核心EI
影响因子:2.833
ISSN:1000-9825
年,卷(期):2013.(5)
  • 2