Dissertation > Excellent graduate degree dissertation topics show
The Research of Identity Management Mechanism with Uniform Identity in IBE
Author: LinHaiQun
Tutor: HuLiang
School: Jilin University
Course: Network and Information Security
Keywords: IBD Unified Identity Identity management LDAP HIBE
CLC: TP393.08
Type: Master's thesis
Year: 2011
Downloads: 47
Quote: 0
Read: Download Dissertation
Abstract
|
Today, both individual users and industrial users, many financial services via the Internet for processing. However, theft, malicious programs always everywhere, confidential documents, account, password, user has no knowledge of the case may be intercepted and deciphered. Means for users to transact business through the Internet there is a huge risk. One of the key technologies to ensure the security of the transaction is the trusted authentication technology. There are two major certification systems: one is based on the PKI (Public Key Infrastructure) authentication technology to achieve a IBE (Identity-based Encryption) to achieve authentication technology. PKI as a mature authentication system, has been widely used in various industries. Its a theory and technology center possessed a complete set of network and information security technology facilities and services based on third-party CA certificate public key cryptography. Identity-based encryption and authentication system IBE (Identity-based Encryption) is a user open string as a public key encryption, it canceled the third-party CA PKI authentication system certification bodies, more succinctly interaction data encryption and authentication of the advantages of being more and more attention from scholars and broad prospects for development, in particular, can play a very important role in the important areas of e-government, e-military affairs. IBE technology, however, is still in a research stage, though many IBE technology improvements, but still no one can be a wide range of uses, IBE system, so how to design a practical IBE system is the focus of the current study. Based on the IBE's development status, identity encryption system combined IBE system prototype hierarchy gives an improved IBE system: IBE system based on trust services, and related presentations given in the text; then on this basis design system with unified identity identity management mechanism, so in the text also gives the authentication technology and related application technology, after the design and implementation as well as the application of a unified identity identity management mechanism is given. Unified identity management can provide a unified security certification services for a variety of applications, with a safe, reliable, efficient. Specific strengths: (1) the user data of unified storage and unified management; (2) centralized user identity verification; (3) using a single point of login authentication, user-friendly, reduce user difficulty, to enhance the user efficiency. Therefore, the unified identity management applied to the popular certification system can effectively improve the management of the IBE system users. Before given the identity of a unified identity management mechanisms to achieve, you must first complete the initial configuration of the key management IBE system based on trust service module, therefore, first given in the text of the system initialization process, followed by On this basis, the identity management mechanism. IBE identity management complete the following functions: (1) user identity registration mechanism: responsible for handling the registration request is submitted by the user. (2) user login authentication mechanism: responsible for user identity verification process, namely through authentication to authenticate users to ensure that they are user claimed. (3) the user's personal information safeguarding mechanisms: primarily responsible for the maintenance of user identity data, the management of the service registration data, the full range of data management services as well as replacement of the user's personal information, real-time updates. (4) the user identity canceled mechanism: responsible for handling user public key revocation. In this paper, we will identify the management module structure is divided into: unified authentication management module, the the unified authentication server and identity information storage server. : Unified authentication management module is responsible for user management, user group management; service provides an interface for the user to read the data submitted by the user connected to the back-end server certification; the unified authentication server used to verify the user's identity, and each user in a different domain in the authority, which is the core of identity management module. Identity information storage data server is used to store the user identity information and user permissions. Subsequently, a combination of these to achieve identity management module gives the IBE system architecture diagram, divided into the following three-tier structure: the main presentation layer, business process layer and data processing layer. The main of which the main presentation layer include: users and services, to provide certification services interface for users and services; business processing layer is used to handle user requests the service delivery process, as well as the main body, said the process of convergence between the layer and the background data processing layer; data processing layer that the identity of the server using LDAP implementations contain identity information, role permissions and service information. Finally, a unified identity identity management mechanisms to achieve two key part of the description, the directory server implementations and each module data exchange information and data streaming format. Followed by an overview of the two based on the unified identity identity management mechanism IBE system: cross-domain access and HIBE. Due to the the IBE system's key escrow, key revocation problem exists, making it difficult to be widely used, so how to design a practical IBE system is still the focus of the current study. In this paper the IBE system improvement program has resulted in the existing IBE system more practical, but there are still many optimization improved authentication.
|
Related Dissertations
- A Secure Application Layer Multicast Group Member Management Model,TP393.08
- Based on the LDAP unified authentication system,TP393.08
- Research on Network Devices Resource Management System Based on Windows Active Directory,TP393.05
- Intranet IPv6 Transition Network Integration Platform,TP393.04
- Research of Centralized Authentication Base on SAML and Implementation in Digital Campus,TP393.18
- Unified Identity Management System Development and Designs,TP311.52
- Digital Campus Information System Design and Implementation,TP311.52
- Domain environment based on WINDOWS platform resource management system of computer hardware,TP316.7
- Research on XML and LDAP Adapter Technology in Telecommunications,TP311.10
- Comparison of Immune Competence of TF from Different Animals and Studies of the Function of TF from Black Bone Chickens(BBC) Against the Immune Supression Caused by IBD Vaccines,S858.31
- Research and Implementation of Unified Identiy Authentiation System,TP393.08
- Research and Design of Efficient P2P Streaming Media On-Demand System,TP393.02
- Research and Implementation of wireless campus network unified authentication module,TP393.18
- Design and Implementation of the Intelligent Mail-head Analysis Mechanisms Based on LDAP,TP393.098
- The nonparametric qualified support domain blind image restoration algorithm,TP391.41
- Research on the Blind Restoration Algorithms for the Adaptive Opto-Electronic Images,TP391.41
- Research and Application of LDAP Message Encoding and Decoding Based on BER,TP311.13
- The Research and Application of Workflow Engine Based on Lightweight WEB Framework,TP311.52
- Research and Implementation of Marine Metadata Directory Service System,TP311.52
- The Design of TJMCC 4A Management Support System,TN915.09
- Changes of Immunological Function and Expression of IL-2 mRNA and Il-2r mRNA in Peripheral Blood of Probiotics-fed Chicks after IBD Vaccination,S858.31
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|