论文部分内容阅读
在对保密通信需要日益增长的情况下,现有的安全技术是不能完全令人满意的。在这一方面现已确立了许多研究项目,其主要目标之一是在OSI应用层上把增加的保密通信服务元素(SGSE)作为新的一类公共应(?)服务元素(ASE).以便为同等实体鉴别、数据机密性和数据完整性提供安全服务,就同等实体鉴别服务来说,建议通过使用基本ACSE(联系控制服务元素)鉴别过程实现同等SCSE之间总的鉴别协议。关于数据完整性和机密性,引入了SCSE传送服务,以满足这两类服务的所有要求,达到选择字段及完整性差错的恢复程度。SCSE用户不需要对这三种服务指出详细的安全功能和机制,只需指出要用的安全功能总的要求。为了实现保密通信,可把SCSE投入到现在和未来的OSI专门应用的实践中去。
With the growing need for secure communications, existing security technologies are not entirely satisfactory. A number of research projects have been established in this regard and one of the main objectives of this is to include the addition of Secure Sense of Information Service Element (SGSE) as a new category of Public Service Elements (ASE) at the OSI application layer. Providing security services for peer-to-peer authentication, data confidentiality and data integrity, and for peer-to-peer authentication services, it is recommended to implement an overall authentication protocol between equal SCSEs by using the basic ACSE (Contact Control Service Element) authentication process. With regard to data integrity and confidentiality, the SCSE delivery service was introduced to meet all the requirements of both types of services to achieve the restoration of selection fields and integrity errors. SCSE users do not need to point out detailed security features and mechanisms for these three services, simply pointing out the general requirements for the security features to be used. For secure communication, SCSE can be put into practice with current and future OSI-specific applications.