首页> 外文会议>The Fourth International Conference on Developments in eSystems Engineering >Public-Key Cryptography Enabled Kerberos Authentication
【24h】

Public-Key Cryptography Enabled Kerberos Authentication

机译:启用公钥加密的Kerberos身份验证

获取原文
获取原文并翻译 | 示例

摘要

Kerberos is a trusted third party authentication protocol based on symmetric key cryptography. This paper studies how Kerberos authentication standard can be extended to support public key cryptography. The paper aims to do this by implementing the most important public-key cryptography extension specifications to the traditional Kerberos standard which incorporate public-key infrastructure (PKI) into the scope of underlying systems trusted by Kerberos. Thus, qualitative experimental measurements can be performed to study and compare various extensions. Although public key crypto-system requires calculations that are computationally expensive, it is well believed that they can eliminate some of Kerberos protocol limitations. The public-key based protocols PKINIT, PKCROSS, and PKTAPP add public-key cryptography support at different stages of the Kerberos framework. They all attempt to improve Kerberos scalability and security by simplifying key management and utilizing trustworthy public-key infrastructures Together. The PKINIT and PKCROSS specifications define a public key based authentication solution across multi-realm Kerberos networks. PKTAPP makes more fundamental changes to the Kerberos standard in an attempt to achieve greater improvements in scalability, security and client privacy issues. Analysis and evaluation have been performed based on our own developed prototype implementations of PKINIT, PKCROSS, and PKTAPP.
机译:Kerberos是基于对称密钥加密技术的可信第三方身份验证协议。本文研究了如何扩展Kerberos身份验证标准以支持公钥加密。本文旨在通过对传统的Kerberos标准实施最重要的公共密钥密码学扩展规范来实现这一目标,该规范将公共密钥基础结构(PKI)纳入了Kerberos信任的基础系统范围。因此,可以进行定性实验测量以研究和比较各种扩展。尽管公钥密码系统要求计算量大,但可以相信它们可以消除某些Kerberos协议限制。基于公用密钥的协议PKINIT,PKCROSS和PKTAPP在Kerberos框架的不同阶段添加了公用密钥加密支持。他们都试图通过简化密钥管理并一起使用可信赖的公钥基础结构来改善Kerberos可伸缩性和安全性。 PKINIT和PKCROSS规范定义了跨多领域Kerberos网络的基于公钥的身份验证解决方案。 PKTAPP对Kerberos标准进行了更根本的更改,以试图在可伸缩性,安全性和客户端隐私问题上实现更大的改进。根据我们自己开发的PKINIT,PKCROSS和PKTAPP原型实现,进行了分析和评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号