首页 | 本学科首页   官方微博 | 高级检索  
     

节点证书与身份相结合的HMIPv6 网络接入认证机制
引用本文:高天寒,郭楠,朱志良.节点证书与身份相结合的HMIPv6 网络接入认证机制[J].软件学报,2012,23(9):2465-2480.
作者姓名:高天寒  郭楠  朱志良
作者单位:1. 东北大学软件学院,辽宁沈阳,110006
2. 东北大学信息科学与工程学院,辽宁沈阳,110006
基金项目:国家自然科学基金(60872040);中央高校基本科研业务费专项资金(N100417002,N100404004)
摘    要:接入认证是层次型移动IPv6(HMIPv6)网络安全的基本需求.构建了适于HMIPv6的分层认证框架,设计了一种节点证书与身份相结合的签名方案,并以此为基础提出了HMIPv6网络双向接入认证机制.该机制利用基于身份密码技术简化了公钥基础设施的复杂密钥管理过程;以节点证书为接入认证的主要依据,消除了接入网络与家乡网络间的消息交互;采用提出的层次化签名方案,实现了用户与接入网络的双向认证.机制经过简单扩展,能够支持多层HMIPv6网络的接入认证.性能与安全性分析表明,与传统的及其他基于身份的认证方案比较,所提出的机制拥有更高的认证效率和安全性.

关 键 词:移动IPv6  层次型移动IPv6  双向接入认证  身份签名  节点证书
收稿时间:2011/7/14 0:00:00
修稿时间:9/2/2011 12:00:00 AM

Access Authentication for HMIPv6 with Node Certificate and Identity-Based Hybrid Scheme
GAO Tian-Han,GUO Nan and ZHU Zhi-Liang.Access Authentication for HMIPv6 with Node Certificate and Identity-Based Hybrid Scheme[J].Journal of Software,2012,23(9):2465-2480.
Authors:GAO Tian-Han  GUO Nan and ZHU Zhi-Liang
Affiliation:1(Software College,Northeastern University,Shenyang 110006,China) 2(College of information Science and Engineering,Northeastern University,Shenyang 110006,China)
Abstract:Access authentication is the basic security requirement of hierarchical mobile IPv6(HMIPv6) network.A mutual access authentication scheme is proposed in this paper based on hierarchical authentication framework as well as node certificate and identity-based hybrid approach.The scheme adopts identity-based cryptography to simplify the cumbersome key management of PKI.Node certificate is introduced to authenticate entity,which eliminates message interactions between home network and access network.A mutual authentication protocol is achieved using proposed hierarchical signature mechanism.The protocol can also be extended to support access authentication in multi-level HMIPv6 network.Performance and security analysis demonstrates that the proposed scheme outperforms other identity-based proposals in terms of efficiency and security.
Keywords:mobile IPv6  hierarchical mobile IPv6  mutual access authentication  identity-based signature  node certificate
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《软件学报》浏览原始摘要信息
点击此处可从《软件学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号