This paper analyzes the traditional anonymous roaming authentication protocol,and pointed out the defi-ciencies of their anonymity is not controlled and the communication is delay.The controllable anonymous roaming authenti-cation protocol proposed in this paper for heterogeneous wireless networks,which can be completed to verify the legitimacy of the identity of the mobile terminal through a message interaction.If the mobile terminal has malicious operation,the home network authentication server can help remote network authentication server to revoke the identity anonymity of the mobile terminal.This is a protocol in anonymous authentication,at the same time,and which effectively preventing the occurrence of malicious behavior,and the communication delay.This protocol is safe in the CK security model.%分析传统的匿名漫游认证协议,指出其存在匿名不可控和通信时延较大的不足,针对上述问题,本文提出异构无线网络可控匿名漫游认证协议,远程网络认证服务器基于1轮消息交互即可完成对移动终端的身份合法性验证;并且当移动终端发生恶意操作时,家乡网络认证服务器可协助远程网络认证服务器撤销移动终端的身份匿名性。本文协议在实现匿名认证的同时,有效防止恶意行为的发生,且其通信时延较小。安全性证明表明本文协议在 CK安全模型中是可证安全的。
展开▼