摘要
为了解决主机在移动过程中发生跨域时,移动网络应用层的安全性,结合移动网络的特点以及存在的安全威胁,对Kerberos域间身份验证协议进行改进,减少客户端参与的协议报文交互次数,使其适合为移动网络的应用服务提供身份验证服务,并采用形式化方法对改进的身份验证协议进行安全性验证。结果表明改进的安全协议能够提供与原有协议相同的安全性。
To address the security of the application layer in mobile network when mobile hosts move across the realm,considering the feature and existing security threats of the mobile network,we modify the Kerberos cross-realm authentication protocol by reducing the number of protocols messages that clients should take.The modified protocol can supply an authentication service to the applications in the mobile network.The formalism method is used to verify the security of the modified authentication protocol.From the result it can been seen the modified protocol can provide the same security as before.
出处
《南京邮电大学学报(自然科学版)》
2010年第6期18-24,共7页
Journal of Nanjing University of Posts and Telecommunications:Natural Science Edition
基金
国家高技术研究发展计划(863计划)项目(2006AA01Z208)
江苏省科技支撑计划项目(BE200915)
南京邮电大学青蓝计划(NY208023)资助项目