资源描述:
《authentication metric analysis and design》由会员上传分享,免费在线阅读,更多相关内容在工程资料-天天文库。
1、©ACM,1999.Thisistheauthors'versionofthework.ItispostedherebypermissionofACMforyourpersonaluse.Notforredistribution.Thedefinitiveversionisavailableathttp://doi.acm.org/10.1145/317087.317088.AuthenticationMetricAnalysisandDesignMICHAELK.REITERBellLabor
2、atories,LucentTechnologiesandSTUARTG.STUBBLEBINECertCoAuthenticationusingapathoftrustedintermediaries,eachabletoauthenticatethenextinthepath,isawell-knowntechniqueforauthenticatingentitiesinalarge-scalesystem.Recentworkhasextendedthistechniquetoinclu
3、demultiplepathsinanefforttobolsterauthentica-tion,butthesuccessofthisapproachmaybeunclearinthefaceofintersectingpaths,ambiguitiesinthemeaningofcertificates,andinterdependenciesintheuseofdifferentkeys.Thus,severalauthorshaveproposedmetricstoevaluateth
4、econfidenceaffordedbyasetofpaths.Inthispaperwedevelopasetofguidingprinciplesforthedesignofsuchmetrics.Wemotivateourprinciplesbyshowinghowpreviousapproachesfailedwithrespecttothesepriniciplesandwhattheconsequencestoauthenticationmightbe.Wethenproposea
5、newmetricthatappearstomeetourprinciples,andsotobeasatisfactorymetricofauthentication.CategoriesandSubjectDescriptors:D.4.6[OperatingSystems]:SecurityandProtectionÐAuthentication;K.6.5[ManagementofComputingandInformationSystems]:SecurityandProtectionÐ
6、AuthenticationGeneralTerms:Measurement,SecurityAdditionalKeyWordsandPhrases:Publickeyinfrastructure,metricsofauthentication1.INTRODUCTIONDeterminingtheownerofapublickeyor,conversely,determiningthepublickeyforauser,appearstobeabasicingredientforexecut
7、ingtransactionssecurelyinanylarge-scaleopensystem.DuetothelackofasingleauthorityforprovidingthisinformationinasystemhavingmanyApreliminaryversionofthispaperappearedintheProceedingsofthe1997IEEESymposiumonSecurityandPrivacy(May4±7,1997)pp.10±20.Workof
8、S.G.StubblebinewasperformedatAT&TResearch.Authors'addresses:M.K.Reiter,BellLaboratories,LucentTechnologies,600MountainAvenue,MurrayHill,NJ07974;email:reiter@research.bell-labs.com;http://www.bell-labs.com/user/reiter;S.G.Stubblebine,CertCo,55BroadStr