Dissertation > Excellent graduate degree dissertation topics show

Research on Delegation Model of Privilege Management Infrastructure

Author: ZhangZhang
Tutor: HongFan
School: Huazhong University of Science and Technology
Course: Information Security
Keywords: Privilege Management Infrastructure Public Key Infrastructure Attribute certificate Entrust Agent issuing services
CLC: TP393.08
Type: Master's thesis
Year: 2007
Downloads: 35
Quote: 0
Read: Download Dissertation

Abstract


With the Internet and the rapid development of global e-commerce , the existing public key infrastructure PKI framework for authentication and authorization management function mode , it has become increasingly unsuited to the needs of the development of the contemporary information society . As PKI logical extension of authorized management infrastructure PMI , aims to the entire PKI applications permission to build a common management infrastructure platform . However , in a large-scale PKI / PMI system when the application type for a long time will be needed for various applications within attribute certificate authority separation to avoid system bottlenecks and meet the minimum separation of duties principle . Therefore , in a large system of PMI commissioned model is essential . X.509v4 (2000) in privilege delegation model distributed authorization characteristics inherent in a complex collection of information and policy implementation difficulties , X.509 2005 amendments to the draft proposed the concept of agent issuing services , and gives the extension of the certificate to be used to achieve these requirements . However, in the DIS assumption attribute authority revocation issued certificate is still valid to be undone , this feature makes the model lacks some flexibility on the practical . X.509v4 (2000) commissioned by the model and the advantages and disadvantages of the DIS respective research X.509v4 (2000) commissioned the implementation mechanism of the model based on the design of a commissioned agent-based issuing Module (DIM) model to the certificate application and certificate validation process , for example the implementation mechanism of the new model . A new DIM - based delegation model DIS ideas, centralized certificate management functions to a small number of entities , and therefore , the the certificate information gathering and key management more convenient than traditional PMI commissioned model . Meanwhile, through the definition of new strategies (attribute certificate chain strategy ) , the model is also more flexible than the DIS - based delegation model realization .

Related Dissertations

  1. Research of Role-based Web Services Security Policy,TP393.08
  2. The Research and Implement of Access Control Mechanism Based on SSL Protocol,TP393.08
  3. Identity-based Services Using in the Distribution System,TP393.08
  4. Design and Implementation of Secret File Transmission System Based on PKI,TP393.08
  5. The Design and Implementation of SCEP,TP393.08
  6. PKI-based Web single sign-on system design and implementation,TP393.08
  7. E-government network security instant messaging system design and implementation,TP393.08
  8. Application of PKI in Secure E-Mail Transfer,TP393.098
  9. Research on New Tree Model of PKI Interoperability,TP309
  10. Research on Security Mechanism of Mobile VPN,TN929.5
  11. The Deployment and Implementation of Public Key Infrastructure in Separation-and-mapping Network,TP393.08
  12. Design and Implementation of Related Application for Public Key Infrastructure,TN918.1
  13. Research on LDAP-Based Implement of Online Certificate Status Verification,TP393.08
  14. Analysis and Research on Identity Certification in Electronic Commerce,TP393.08
  15. Design and Implementation of the RB-PMI - based virtual enterprise access control,TP393.08
  16. Design and Implementation of Secury Message Oriented Middleware Based on JMS,TP311.52
  17. IPSec VPN System Design and Implementation Based on PKI and GRE,TP393.08
  18. The Research of the Realty Service Contract,D923.6;F293.33
  19. The Design and Implementation of CA Certificate Center Based on PKI,TP393.08
  20. Research on the Security Scheme of Mobile Ad Hoc Networks Based on the Trust-value,TN929.5

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile