分布式主动安全签名系统的研究与实现
Study and Implementation of a Proactive Security Signature System
-
摘要: 在分布计算环境中构造安全的应用系统是当前计算机信息安全研究的重点课题 基于数字签名算法DSA ,首次利用面向对象的中间件技术、密钥的共享技术和动态刷新技术 ,研究并实现了一种分布式主动安全签名系统 ,给出了相应的系统结构 ,提出并实现了主动安全的影子刷新和影子重构等算法 ,对系统的安全性进行了分析 结果表明 ,当系统总的结点数n≥ 3t+1时 ,即使攻击者每个周期都能成功地入侵系统中t个结点 ,该签名系统也能有效防止攻击者窃取签名私钥 ,正常提供DSA签名服务Abstract: Constructing secure application in distributed computing environment is an important research problem of security Through using technologies like middleware, secret sharing, and share refresh, a proactive security DSA signature system is proposed and implemented, which includes a framework and a set of algorithms In this system, time is divided into time periods By analyzing the system’s security, a conclusion is drawn that if there are at least 3t+1 servers in the system, the signature system is secure and available even when up to t servers are corrupted during any time period
下载: