电子标签系统身份认证及访问控制研究
[Abstract]:The handheld terminal in the electronic label system collects the information of the electronic tag and uploads it to the server. A large number of illegal mobile terminals can illegally invade and upload malicious code, virus and other information to the server. Finally, the information of the server is leaked, destroyed, the server is accessed illegally, the information is eavesdropped and attacked by virus. These problems are threatening the information security of the electronic tag system in the application process. On the basis of participating in the development project of tag system application and having a better understanding of the tag system, this paper combines the existing terminal authentication technology, bilinear pair, secret sharing and other basic knowledge. A new threshold authentication scheme is proposed in the authentication process of terminal and server, and the method based on attribute encryption is applied to the access control model of the server, which improves the security of the whole electronic tag application project. The main contents of this paper are as follows: the main architecture of tag system and the current research status of handheld intelligent terminal and server authentication at home and abroad are studied. At the same time, the defects and shortcomings of authentication of handheld intelligent mobile terminal and server are discussed. In this paper, a new authentication scheme is proposed, which increases the security function against single point failure. In the authentication scheme, bilinear pairs are mainly used, and the secret sharing method realizes threshold authentication, which effectively solves the problem of pseudo-authentication after a single server is attacked in the authentication process. An access control model is obtained by applying attribute-based encryption to access control. In this model, the data owner can assign access rights to the visitors through the threshold attribute, which makes the visitors with different permissions view different information resources. The data stored in the server is encrypted, which improves the security of data access. On the basis of the above research, using Eclipse and other development tools, combining with PBC, a cryptographic development library based on bilinear pairings, an electronic tag application system for engine maintenance tool management is developed on the Android development platform. The terminal software and server software are developed respectively. The system can manage the daily functions such as storage, loan, scrap, return, maintenance and so on through the electronic label. At the same time, the system can resist single point failure attack in the authentication of terminal and server. The access rights of visitors at different levels are also set by the attribute-based encryption access control model. Finally, the validity, practicability and security of the system are proved by testing the daily function and security function of the system.
【学位授予单位】:重庆理工大学
【学位级别】:硕士
【学位授予年份】:2017
【分类号】:TP311.52;TP309
【参考文献】
相关期刊论文 前10条
1 薛锋;汪定;王立萍;马春光;;对两个基于智能卡的口令认证协议的安全性分析[J];计算机应用;2012年07期
2 赵yN诚;;基于0.13um工艺RFID系统tag中的ASK解调技术[J];数字技术与应用;2011年10期
3 苏金树;曹丹;王小峰;孙一品;胡乔林;;属性基加密机制[J];软件学报;2011年06期
4 邓栗;王晓峰;;基于双线性对的智能卡口令认证改进方案[J];计算机工程;2010年18期
5 王小明;付红;张立臣;;基于属性的访问控制研究进展[J];电子学报;2010年07期
6 潘春兰;周安民;肖丰霞;王书歌;;对Liao等人身份鉴别方案的分析与改进[J];计算机工程与应用;2010年04期
7 许春香;唐安阳;;使用双线性对构造的智能卡口令认证方案[J];电子科技大学学报;2008年05期
8 李晓峰;冯登国;陈朝武;房子河;;基于属性的访问控制模型[J];通信学报;2008年04期
9 黄治琰;浅谈访问控制技术[J];计算机时代;2004年05期
10 郭玮,茅兵,谢立;强制访问控制MAC的设计及实现[J];计算机应用与软件;2004年03期
相关博士学位论文 前4条
1 熊安萍;云存储环境下基于属性的密文策略访问控制机制研究[D];电子科技大学;2015年
2 范亚军;无线移动网络中的认证密钥交换协议及其应用研究[D];北京邮电大学;2012年
3 罗鑫;访问控制技术与模型研究[D];北京邮电大学;2009年
4 许春根;访问控制技术的理论与方法的研究[D];南京理工大学;2003年
相关硕士学位论文 前10条
1 范宁宁;“互联网+智能制造”技术架构研究及应用[D];苏州大学;2016年
2 何博;基于移动互联网的配网现场作业系统信息安全的设计[D];华北电力大学(北京);2016年
3 刘晨;高校体育信息化服务中手机APP的设计与应用[D];西南交通大学;2015年
4 明镜;智能配电网云存储中基于属性的访问控制研究[D];华北电力大学;2015年
5 刘会议;移动互联网中身份认证技术的研究[D];山东大学;2014年
6 刘小培;应用属性基加密实现访问控制的研究与分析[D];电子科技大学;2014年
7 张勇迪;基于移动终端的人脸识别身份认证技术研究[D];湖南大学;2014年
8 刘佳;基于角色的云平台访问控制技术[D];武汉理工大学;2013年
9 汤劢;信息化背景下互联网安全管理研究[D];中南大学;2013年
10 谢雅婷;RFID电子标签管理系统的设计与实现[D];电子科技大学;2012年
,本文编号:2342417
本文链接:https://www.wllwen.com/kejilunwen/ruanjiangongchenglunwen/2342417.html