天堂国产午夜亚洲专区-少妇人妻综合久久蜜臀-国产成人户外露出视频在线-国产91传媒一区二区三区

當前位置:主頁 > 管理論文 > 移動網絡論文 >

可信SSH協(xié)議的設計與實現(xiàn)

發(fā)布時間:2019-04-13 09:02
【摘要】:隨著計算機網絡技術特別是Internet技術的發(fā)展,網絡安全問題日益受到人們的重視,網絡安全協(xié)議的設計與分析成為當前人們研究的熱點,網絡安全協(xié)議如SSH、IPSec、TLS在保證數據傳輸安全性方面起到的關鍵作用越來越受到關注。SSH作為一種通用且可擴展的安全協(xié)議,加密網絡中傳輸的數據,一定程度上降低了竊聽等部分網絡攻擊的成功概率與危害。然而,惡意用戶的攻擊手段越來越復雜,現(xiàn)有的計算機系統(tǒng)很容易遭受到惡意攻擊。由于傳統(tǒng)的SSH協(xié)議面臨著一些安全威脅,惡意用戶可以利用SSH對遠程的服務器進行攻擊?尚庞嬎慵夹g可以通過提高平臺安全性來提高網絡安全協(xié)議的安全強度,遠程證明技術保證遠程不可信計算平臺上的代碼未被篡改,但如果直接應用到傳統(tǒng)的SSH協(xié)議中會帶來高延遲、低效等缺點。為達到增強協(xié)議通信終端安全性的目的并盡量減少對通信的影響,本文提出了一種基于第三方平臺進行可信證明的SSH協(xié)議,旨在將傳統(tǒng)SSH協(xié)議結合可信計算平臺的遠程證明技術,增強通信雙方的可信與安全特性的同時,不會降低傳統(tǒng)SSH協(xié)議的機密性、完整性和可用性。本文首先研究了網絡安全協(xié)議與可信計算的發(fā)展;然后詳細論述SSH協(xié)議與可信計算的研究基礎;重點分析SSH協(xié)議面臨的安全風險。為達到設計目標,本文在傳統(tǒng)SSH協(xié)議之上,結合第三方平臺對終端進行可信證明,形成可信SSH協(xié)議,并在OpenSSH基礎上實現(xiàn)了此協(xié)議。為了證明本可信協(xié)議的安全特性,本文隨后研究了安全協(xié)議的驗證方法;對本可信協(xié)議部分進行了形式化分析;并對不同類型的攻擊下的防范能力進行了論述分析和攻擊實驗驗證。經過總結分析,相較于傳統(tǒng)SSH協(xié)議,此協(xié)議的安全性和可信性有所提高,且沒有明顯降低連接效率。此協(xié)議對可信協(xié)議的發(fā)展有著積極的意義。
[Abstract]:With the development of computer network technology, especially Internet technology, the problem of network security has been paid more and more attention by people. The design and analysis of network security protocol has become the focus of research, such as network security protocol such as SSH,IPSec,. As a universal and extensible security protocol, TLS encrypts the data transmitted in the network. To a certain extent, the successful probability and harm of some network attacks such as eavesdropping are reduced. However, the attack methods of malicious users become more and more complex, and the existing computer systems are vulnerable to malicious attacks. Because the traditional SSH protocol faces some security threats, malicious users can use SSH to attack remote servers. Trusted computing technology can improve the security intensity of network security protocol by improving platform security. Remote proof technology ensures that the code on remote untrusted computing platform is not tampered with. However, if directly applied to the traditional SSH protocol, it will bring high latency, low efficiency and other shortcomings. In order to enhance the security of protocol communication terminals and minimize the impact on communication, this paper proposes a SSH protocol based on third-party platform for trusted authentication. The purpose of this paper is to combine the traditional SSH protocol with the trusted computing platform to enhance the trusted and secure characteristics of both sides of the communication, without reducing the confidentiality, integrity and availability of the traditional SSH protocol. This paper first studies the development of network security protocol and trusted computing, then discusses the research foundation of SSH protocol and trusted computing in detail, and emphatically analyzes the security risk of SSH protocol. In order to achieve the design goal, this paper based on the traditional SSH protocol, combined with the third-party platform to carry on the trusted proof to the terminal, forms the trusted SSH protocol, and realizes this protocol on the basis of OpenSSH. In order to prove the security characteristics of the trusted protocol, the verification method of the security protocol is studied, and the formal analysis of the trusted protocol is carried out. At the same time, the defensive ability of different types of attacks is analyzed and verified by experiments. Compared with the traditional SSH protocol, the security and credibility of this protocol are improved, and the connection efficiency is not significantly reduced. This agreement has positive significance to the development of trusted protocol.
【學位授予單位】:北京交通大學
【學位級別】:碩士
【學位授予年份】:2017
【分類號】:TP393.08

【參考文獻】

相關期刊論文 前8條

1 鐘軍;吳雪陽;江一民;段光明;;一種安全協(xié)議的安全性分析及攻擊研究[J];計算機工程與科學;2014年06期

2 常曉林;秦英;邢彬;左向暉;;SSH可信信道安全屬性的形式化驗證[J];北京交通大學學報;2012年02期

3 劉孜文;馮登國;;基于可信計算的動態(tài)完整性度量架構[J];電子與信息學報;2010年04期

4 李莉;曾國蓀;陳波;;開放網絡環(huán)境下的屬性遠程證明[J];計算機應用;2008年01期

5 沈昌祥;張煥國;馮登國;曹珍富;黃繼武;;信息安全綜述[J];中國科學(E輯:信息科學);2007年02期

6 薛銳;馮登國;;安全協(xié)議的形式化分析技術與方法[J];計算機學報;2006年01期

7 張煥明,宋振鋒;SSH協(xié)議分析[J];暨南大學學報(自然科學與醫(yī)學版);2003年03期

8 張杰,戴英俠;SSH協(xié)議的發(fā)展與應用研究[J];計算機工程;2002年10期

,

本文編號:2457428

資料下載
論文發(fā)表

本文鏈接:http://sikaile.net/guanlilunwen/ydhl/2457428.html


Copyright(c)文論論文網All Rights Reserved | 網站地圖 |

版權申明:資料由用戶02934***提供,本站僅收錄摘要或目錄,作者需要刪除請E-mail郵箱bigeng88@qq.com
97人摸人人澡人人人超碰| 日韩一区二区三区在线日| 日本一二三区不卡免费| 黄色国产一区二区三区| 亚洲一区二区福利在线| 少妇丰满a一区二区三区| 一区二区三区日本高清| 欧美日韩综合在线精品| 国产一级性生活录像片| 夫妻性生活动态图视频| 国产级别精品一区二区视频| 偷自拍亚洲欧美一区二页| 亚洲国产精品一区二区毛片| 国产伦精品一区二区三区精品视频 | 欧美一区二区三区播放| 国产成人av在线免播放观看av| 东北老熟妇全程露脸被内射| 中文字幕禁断介一区二区| 色婷婷国产精品视频一区二区保健| 日韩黄片大全免费在线看| 色欧美一区二区三区在线| 欧美精品日韩精品一区| 欧美日韩国产另类一区二区| 久久国产亚洲精品赲碰热| 婷婷色国产精品视频一区| 免费在线成人午夜视频| 一区二区日韩欧美精品| 久草精品视频精品视频精品| 欧美午夜一区二区福利视频| 中文字幕免费观看亚洲视频| 国产偷拍精品在线视频| 日韩一区二区三区嘿嘿| 久久天堂夜夜一本婷婷| 神马午夜福利一区二区| 日韩日韩日韩日韩在线| 亚洲天堂一区在线播放| 久久中文字人妻熟女小妇| 免费在线成人激情视频| 欧美精品久久一二三区| 女生更色还是男生更色| 熟女体下毛荫荫黑森林自拍|