项目名称: 异构无线网络可信远程证明的组合安全理论与协议设计
项目编号: No.61202390
项目类型: 青年科学基金项目
立项/批准年度: 2013
项目学科: 计算机科学学科
项目作者: 杨力
作者单位: 西安电子科技大学
项目金额: 25万元
中文摘要: 本项目研究异构无线网络可信远程证明的组合安全理论与协议设计。首先,以通用可组合安全理论为基础,给出可信计算环境下攻击者能力的描述与定义,设计可信计算理想函数,构建可信计算的通用可组合安全模型;其次,在新的可组合安全模型指导下,设计直接匿名证明协议、用户及平台统一认证协议等,并达到通用可组合安全性;最后,结合3G/WLAN异构无线融合场景,基于可信增强的理想函数,设计实用的组合安全的可信增强的漫游认证协议与快速切换协议,增强3G/WLAN异构融合网络认证机制的安全性,确保移动用户与终端接入网络时的安全性。项目的研究既是对安全协议设计模型的有益扩展,也是对异构网络认证架构的安全增强,将为实现异构无线网络的可信互联与深入发展提供理论依据与技术支撑。
中文关键词: 组合安全;可信计算;远程证明;异构无线网络;认证协议
英文摘要: In this research, we will study the composable security thoery and protocol design of trusted remote attestation in heterogenous wireless networks. Firstly, we will define the ability of attacker under trusted computing enviroment, and design the ideal functionality of trusted computing based on universally composable security thoery, then establish the universally composable security model for trusted computing. Secondly, we will design direct anonymous attestation protocols and unified authentication protocols for users and its platforms, and which achieve universally composable security. Finally, we will design composable security and trusted enhanced roaming authentication protocols and fast handoff protocols under 3G/WLAN heterogenous wireless networks. It will enhance the security properties of the authentication mechanism and ensure the networks accessing by users and its mobile terminals securely. The results of the research will not only be a useful extension to universally composable security theory, but also the security enhancements to the authentication architecture of heterogenous wireless networks. It is expected to provide better support for the healthy development on trusted interconnection of heterogenous wireless networks.
英文关键词: Composition Security;Trusted Computing;Remote Attestation;Heterogenous Wireless Networks;Authentication Protocol