论文部分内容阅读
将数字证书技术、认证代理技术和可信计算技术相结合,针对园区网环境,提出了一种基于可信计算平台的统一认证系统模型,该模型通过在计算终端引入可信平台模块、对用户身份统一认证、对计算平台进行身份及完整性验证等方法,解决了存在多个应用系统时口令容易混淆、访问效率低下和终端的可信性难以保证的问题.系统的安全性分析和测试结果表明,用户只需一次认证,即可访问其拥有权限的多个应用系统,效率和安全性得到了很大的提升,而且可以保证终端的可信性.
Combining digital certificate technology, authentication proxy technology and trusted computing technology, a unified authentication system model based on trusted computing platform is proposed for the campus network environment. By introducing a trusted platform module in the computing terminal, Identity authentication, identity and integrity verification of the computing platform and other methods to solve the existence of multiple applications prone to password confusion, access inefficiencies and credibility of the terminal is difficult to guarantee the issue of the system security analysis and test results Shows that users only need to authenticate once to access multiple application systems which have their own rights, the efficiency and security are greatly improved, and the credibility of the terminal can be guaranteed.