改進(jìn)的OpenID Connect協(xié)議及其安全性分析
發(fā)布時(shí)間:2018-06-02 15:23
本文選題:非對稱加密 + 數(shù)字簽名 ; 參考:《計(jì)算機(jī)應(yīng)用》2017年05期
【摘要】:Open ID Connect協(xié)議是最新的單點(diǎn)登錄協(xié)議之一,已經(jīng)廣泛應(yīng)用于用戶身份認(rèn)證領(lǐng)域,其安全性受到了人們的重點(diǎn)關(guān)注。為增強(qiáng)Open ID Connect協(xié)議的安全性,首先引入數(shù)字簽名及非對稱加密技術(shù),對其進(jìn)行改進(jìn),重點(diǎn)關(guān)注改進(jìn)后協(xié)議的秘密性和認(rèn)證性;其次基于符號(hào)模型,應(yīng)用應(yīng)用PI演算對改進(jìn)的Open ID Connect協(xié)議進(jìn)行形式化建模;然后為驗(yàn)證改進(jìn)后協(xié)議的認(rèn)證性和秘密性,分別使用非單射性和query對認(rèn)證性和秘密性進(jìn)行建模;最后把改進(jìn)的Open ID Connect協(xié)議的應(yīng)用PI演算模型轉(zhuǎn)換為安全協(xié)議分析工具ProVerif的輸入,應(yīng)用ProVerif對其進(jìn)行形式化分析。實(shí)驗(yàn)結(jié)果表明,改進(jìn)后的Open ID Connect協(xié)議具有認(rèn)證性和秘密性。
[Abstract]:Open ID Connect protocol is one of the newest single sign-on protocols and has been widely used in the field of user identity authentication. In order to enhance the security of Open ID Connect protocol, digital signature and asymmetric encryption techniques are introduced to improve the security of the improved protocol, focusing on the secrecy and authentication of the improved protocol. Pi calculus is used to formalize the improved Open ID Connect protocol, and then, in order to verify the authentication and secrecy of the improved protocol, the authentication and secrecy are modeled using non-monojection and query, respectively. Finally, the Pi calculus model of the improved Open ID Connect protocol is transformed into the input of the security protocol analysis tool ProVerif, and the formal analysis is carried out by using ProVerif. Experimental results show that the improved Open ID Connect protocol is authenticated and secret.
【作者單位】: 中南民族大學(xué)計(jì)算機(jī)科學(xué)學(xué)院;
【基金】:國家自然科學(xué)基金資助項(xiàng)目(61272497) 湖北省自然科學(xué)基金資助項(xiàng)目(2014CFB249)~~
【分類號(hào)】:TP393.08
【相似文獻(xiàn)】
相關(guān)期刊論文 前4條
1 陳宇紅,段志弘,董海;第二講 OS/2 Warp Connect[J];中國計(jì)算機(jī)用戶;1996年06期
2 ;InteropNet 2013:Avaya Fabric Connect出色完成任務(wù)[J];電信技術(shù);2013年06期
3 吳平;請個(gè)網(wǎng)上“計(jì)時(shí)工”──Connect Monitor V3.0.3[J];電腦技術(shù);1998年08期
4 ;[J];;年期
相關(guān)重要報(bào)紙文章 前1條
1 薛以輝;ReefEdge Connect System 3.0讓IP電話動(dòng)起來[N];中國計(jì)算機(jī)報(bào);2002年
,本文編號(hào):1969255
本文鏈接:http://sikaile.net/guanlilunwen/ydhl/1969255.html
最近更新
教材專著