首页> 外文学位 >Mutual authentication, confidentiality, and key management (MACKMAN) system for mobile radio networks.
【24h】

Mutual authentication, confidentiality, and key management (MACKMAN) system for mobile radio networks.

机译:用于移动无线网络的相互认证,机密性和密钥管理(MACKMAN)系统。

获取原文
获取原文并翻译 | 示例

摘要

This research addresses network security issues in mobile radio networks. The objective of this research is to provide secure communication to legitimate users, and to prevent fraudulent use of network resources by unauthorized individuals. The Mutual Authentication, Confidentiality, and Key MANagement (MACKMAN) system addresses some of the deficiencies in the security services of the current mobile radio networks, such as GSM, CDPD, and Digital PCS. MACKMAN system provides a more secure registration and authentication service for mobile radio communication. Capabilities provided by the MACKMAN system include registration of mobile stations with the network, mutual authentication of the mobile station and the underlying network entity, data integrity, information confidentiality, location confidentiality, and non-repudiation of origin. Mutual authentication can be further divided into entity authentication, data origin authentication, and transaction authentication.; The constraints of the underlying system need to be considered when designing a security system. Air-link is used to broadcast signaling and data in mobile radio environments. With no fixed topology, there is no physical protection against illegal access and eavesdropping. In addition to the broadcast nature of communication, mobile devices have limited battery power. In a protocol designed for such an environment, the number of required computations should be minimized, and they should be made as efficient as possible. Since limited bandwidth is available for communication, the security schemes also need to be efficient in the number and size of messages exchanged. The authentication protocols for the initial registration, certificate application, and network authentication and key exchange phases are designed around these constraints.; Public key encryption is used to mutually authenticate the mobile station and the base station. MACKMAN provides link-by-link, or link-level confidentiality between the mobile station and the base station. Information confidentiality is provided using symmetric encryption. A session key is exchanged during network authentication, which is used to encrypt data. Digital signatures are used to provide data integrity and non-repudiation of origin. Aliases are used to provide user anonymity and location confidentiality. MACKMAN system assumes the availability of an established infrastructure of certification authorities for management and distribution of public encryption keys and signature verification keys.
机译:这项研究解决了移动无线电网络中的网络安全问题。这项研究的目的是向合法用户提供安全的通信,并防止未经授权的个人对网络资源的欺诈性使用。相互认证,机密性和密钥管理(MACKMAN)系统解决了当前移动无线电网络(例如GSM,CDPD和Digital PCS)的安全服务中的某些不足。 MACKMAN系统为移动无线电通信提供了更安全的注册和身份验证服务。 MACKMAN系统提供的功能包括在网络中注册移动台,对移动台与基础网络实体进行相互认证,数据完整性,信息机密性,位置机密性和不可抵赖性。相互认证可以进一步分为实体认证,数据源认证和交易认证。设计安全系统时,需要考虑基础系统的约束。空中链路用于在移动无线电环境中广播信令和数据。没有固定的拓扑,就没有物理保护措施可以防止非法访问和窃听。除了通信的广播性质之外,移动设备还具有有限的电池电量。在为这种环境设计的协议中,所需计算的数量应最小化,并且应使其尽可能高效。由于有限带宽可用于通信,因此安全方案还需要在交换的消息的数量和大小方面有效。围绕这些约束设计了初始注册,证书申请以及网络认证和密钥交换阶段的认证协议。公钥加密用于相互认证移动站和基站。 MACKMAN提供移动站和基站之间的逐个链接或链接级别的机密性。使用对称加密提供信息机密性。会话密钥在网络身份验证期间进行交换,用于加密数据。数字签名用于提供数据完整性和原产地不可否认性。别名用于提供用户匿名性和位置机密性。 MACKMAN系统假定证书管理机构已建立的基础结构可用,用于管理和分发公共加密密钥和签名验证密钥。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号