摘要
为保证智能终端和企业内网数据中心的双向通信安全,以数字签名和国密算法SM2为基础,提出一种终端接入认证协商协议。给出安全风险和效率分析,并利用BAN逻辑进行形式化分析。结果表明,该协议在终端和企业内网数据中心实现双方身份认证,协商出一个用于后续加密通信的共享密钥,具有较高的安全性。
In order to ensure the two-way communication security between the intelligent terminal and the enterprise intranet data center,a terminal access authentication negotiation protocol is proposed based on the digital signature and the national secret algorithm SM2.Security risk and efficiency analysis are given and BAN logic is used for formal analysis.The results show that the protocol implements two-party identity authentication in the terminal and enterprise intranet data center,and negotiates a shared key for subsequent encrypted communication,which has high security.
作者
吕良
李瑞
LV Liang;LI Rui(The Third Institute of the Ministry of Public Security,Shanghai 201204;North China Electric Power University,Beijing 102206)
出处
《计算机与数字工程》
2021年第3期530-535,共6页
Computer & Digital Engineering