高级检索

    一种面向组播的双向身份鉴别与授权协议

    A Protocol of Bidirectional Authentication and Authorization for IP Multicast

    • 摘要: 提出一种基于组播的逻辑心跳时钟以及一种基于跳变秘密的挑战-回应身份鉴别,作为协议的关键,并将逻辑时钟结合到消息的独立双重随机值链.据此,主体的秘密、授权以及消息是一次性有效的;消息是上下文敏感的.形式化分析及实验结果表明,该协议能够完成身份的双向鉴别和授权,能够鉴别成员未经声明就脱离组、抵抗轮内延时或偏向重放以及中间人攻击.

       

      Abstract: As an essential to the protocol, a multicast-based logical heartbeat clock and a challenge-response authentication based on secret hopping are presented, and then the logical clock is combined with independence dual nonce chain of the messages. According to the above, the principal's secret, the authorization, and the messages are one-off effectiveness in run; the messages are also context sensitive. The formalization analysis and test result indicate that this protocol can complete the bidirectional authentication and authorization, can authenticate a member who departs from the secret communication without any statement, and can resist straight or deflective run internal replay attacks, as well as the man-in-middle attacks.

       

    /

    返回文章
    返回