Dissertation > Excellent graduate degree dissertation topics show
Research on Delegation Model of Privilege Management Infrastructure
Author: ZhangZhang
Tutor: HongFan
School: Huazhong University of Science and Technology
Course: Information Security
Keywords: Privilege Management Infrastructure Public Key Infrastructure Attribute certificate Entrust Agent issuing services
CLC: TP393.08
Type: Master's thesis
Year: 2007
Downloads: 35
Quote: 0
Read: Download Dissertation
Abstract
|
With the Internet and the rapid development of global e-commerce , the existing public key infrastructure PKI framework for authentication and authorization management function mode , it has become increasingly unsuited to the needs of the development of the contemporary information society . As PKI logical extension of authorized management infrastructure PMI , aims to the entire PKI applications permission to build a common management infrastructure platform . However , in a large-scale PKI / PMI system when the application type for a long time will be needed for various applications within attribute certificate authority separation to avoid system bottlenecks and meet the minimum separation of duties principle . Therefore , in a large system of PMI commissioned model is essential . X.509v4 (2000) in privilege delegation model distributed authorization characteristics inherent in a complex collection of information and policy implementation difficulties , X.509 2005 amendments to the draft proposed the concept of agent issuing services , and gives the extension of the certificate to be used to achieve these requirements . However, in the DIS assumption attribute authority revocation issued certificate is still valid to be undone , this feature makes the model lacks some flexibility on the practical . X.509v4 (2000) commissioned by the model and the advantages and disadvantages of the DIS respective research X.509v4 (2000) commissioned the implementation mechanism of the model based on the design of a commissioned agent-based issuing Module (DIM) model to the certificate application and certificate validation process , for example the implementation mechanism of the new model . A new DIM - based delegation model DIS ideas, centralized certificate management functions to a small number of entities , and therefore , the the certificate information gathering and key management more convenient than traditional PMI commissioned model . Meanwhile, through the definition of new strategies (attribute certificate chain strategy ) , the model is also more flexible than the DIS - based delegation model realization .
|
Related Dissertations
- Research of Role-based Web Services Security Policy,TP393.08
- The Research and Implement of Access Control Mechanism Based on SSL Protocol,TP393.08
- Identity-based Services Using in the Distribution System,TP393.08
- Design and Implementation of Secret File Transmission System Based on PKI,TP393.08
- The Design and Implementation of SCEP,TP393.08
- PKI-based Web single sign-on system design and implementation,TP393.08
- E-government network security instant messaging system design and implementation,TP393.08
- Application of PKI in Secure E-Mail Transfer,TP393.098
- Research on New Tree Model of PKI Interoperability,TP309
- Research on Security Mechanism of Mobile VPN,TN929.5
- The Deployment and Implementation of Public Key Infrastructure in Separation-and-mapping Network,TP393.08
- Design and Implementation of Related Application for Public Key Infrastructure,TN918.1
- Research on LDAP-Based Implement of Online Certificate Status Verification,TP393.08
- Analysis and Research on Identity Certification in Electronic Commerce,TP393.08
- Design and Implementation of the RB-PMI - based virtual enterprise access control,TP393.08
- Design and Implementation of Secury Message Oriented Middleware Based on JMS,TP311.52
- IPSec VPN System Design and Implementation Based on PKI and GRE,TP393.08
- The Research of the Realty Service Contract,D923.6;F293.33
- The Design and Implementation of CA Certificate Center Based on PKI,TP393.08
- Research on the Security Scheme of Mobile Ad Hoc Networks Based on the Trust-value,TN929.5
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|