摘要
组播技术在面向组的应用中越来越多地使用,但是组播数据源认证问题却一直没有很好的解决方案。IPSec是解决IP层安全问题的协议,目前IPSec协议已经越来越多地用于组播应用中,在对IPSec的安全组播主机系统框架进行研究的基础上,提出了基于一次性签名的组播数据源认证方案,重点解决了组播数据源认证设计的困难,这个方案能够达到组播数据源认证的安全性与性能两个方面的要求,尤其在抗抵赖和计算量两个方面作了改进。
The multicast technology is an increasing application in many cases. However how to address the multicast data origin authentication, there is no good solution. The IPsec protocol is for solving IP layer security. It has been applied in many multicast applications now. Based on the studying IPSec-based host architecture for secure multicast, a one-time signature-based multicast data origin authentication scheme was presented. The difficulty in the designing the multicast data origin authentication was solved. This scheme can achieve the request on the security and performance of the multicast data origin authentication, and especially the improvement of non-repudiation and computational quantity.
出处
《计算机工程与设计》
CSCD
北大核心
2006年第10期1754-1756,共3页
Computer Engineering and Design
基金
中国工程物理研究院基金项目(20030661)
关键词
IPSEC协议
组播数据源认证
单向函数
一次性签名
抗抵赖
IPsec protocol
multicast data origin authentication
one-way function
one-time signature
non-repudiation