摘要
文中提出并实现了一个基于安全套接字层(SSL)技术的安全WWW系统.该系统可为WWW客户机和服务器的应用层通信应用软件提供数据加密、信息完整性、实体鉴别和非抵赖等安全服务.利用流机制和层服务者技术将安全套接字层嵌入操作系统内核,从而使安全服务对上层的所有应用软件透明.为提高浏览器的通信效率,文中提出了适合于系统内核实现的面向进程的握手保密会话.文中实现的安全WWW系统可跨Win32(95,98,NT)和UNIX平台运行,并可对htp、电子邮件、FTP和telnet等提供安全保护.
In the paper here, a secure World Wide Web system based on secure sockets layer is put forward and implemented, which can be used to provide secure services such as encryption, integrity, peer authentication, and non\|repudiation. SSL can be embedded into the kernel of operating systems by means of stream mechanism and layered service provider technique. This make the SSL transparent to all applications. In order to reduce the delay of communication, a new session key method oriented to the host process is proposed. This SSL can run across WIN32 and UNIX platforms and secure http, e\|mail, ftp and telnet.
出处
《计算机研究与发展》
EI
CSCD
北大核心
1999年第5期619-624,共6页
Journal of Computer Research and Development
基金
国家"八六三"高技术计划306主题基金
关键词
安全套接字层
WWW
INTERNET网
防火墙
SSL
secure sockets layer,Internet security,secure World Wide Web,OS kernel,key management,cryptography