摘要
联邦身份管理是一个在大规模异构网络环境中对身份进行统一管理的安全技术。在分析ITU-T联邦身份管理双向认证模型的基础上,根据实体安全需求设计认证系统,并针对模型的特点设计出一种面向实体安全需求的双向认证系统,最后简要分析了系统的安全性。该系统不仅能够有效保护实体身份信息的安全性,而且兼顾了实体需求和认证效率,可用于不同安全等级的应用场合,有较高的实用价值。
Federated Identity Management is a centralization of management security technology for identity in large-scale heterogeneous network environments. Based on analysis of mutual authentication mode in ITU-T federal identity management, an authentication system is proposed according to the security requirement of entity and a demand-oriented mutual authentica- tion system is designed by making use of the features of mode. The designed system could effectively protect the identity information of entity but also give consideration to the demand of entity and the efficiency of authentication system. This system could be used to application cases with different security-level environment, and is of fairly high practical value.
出处
《信息安全与通信保密》
2010年第2期73-75,共3页
Information Security and Communications Privacy