摘要
通过传统USBKey设备来实现双因子身份认证的方法已不能满足用户对更高安全性、便捷性的要求。为了解决在移动端实现安全认证的需求,文章提出了基于移动数字证书的企业安全认证方案。首先给出移动安全认证中间件+移动安全认证管理平台的总体架构设计,基于该架构,研究详细阐明了移动安全认证涉及到的核心安全设计,在行为感知和威胁感知方面引入了机器学习模型。最后基于移动数字证书的企业应用案例,介绍了移动认证的完整业务流程。
The method of realizing two-factor identity authentication through traditional USBKey devices can no long meet the requirements of users for higher security and convenience.In order to solve the need of realizing security authentication in mobile terminal,this paper proposes an enterprise security authentication scheme based on mobile digital certificate.Firstly,this paper gives the overall architecture design of mobile security authentication middleware and mobile security authentication management platform.Based on this architecture,the core security design involved in mobile security authentication is explained in detail,and introduces machine learning model in behavior perception and threat perception.Finally,this paper gives an enterprise application case based on mobile digital certificate and introduces the complete business process of mobile authentication.
作者
钟征燕
ZHONG Zhengyan(China Tobacco Guangxi Industrial Co.,Ltd.,Nanning 530001,China)
出处
《现代信息科技》
2020年第3期153-155,共3页
Modern Information Technology
关键词
移动认证
数字证书
威胁感知
mobile authentication
digital certificate
threat awareness