具有层次结构的身份加密(HIBE)机制,是为了解决传统的身份加密(IBE)机制的密钥托管和效率低下问题,在原有机制基础上,通过使用分层密钥服务器来进行身份认证、数据加密、数字签名。针对教务系统中的网络安全问题,将HIBE机制应用到该系统中,提出了基于分层身份加密的教务系统信息安全解决方案,以HIBE为核心,利用表示用户身份的任意字符串为公钥、椭圆曲线困难问题加密和设置分层密钥服务器等方法,来简化用户认证、防止数据泄漏被篡改和提高系统的整体效率。用PBC代码库及C语言实现的分层模型进行实验,结果表明该方案可行有效。
To solve the key escrow and low performance in traditional Identity-Based Encryption(IBE),hierarchical identify-based encryption(HIBE) with hiberarchy use the Private Key Generator to figure-identity,data encryption and digital-underwriting. Aiming at the network security in educational administration, the scheme based on hiberarchy Identity-Based Encryption is adopted in the system,which take the HIBE as core,using the methods such as treating the random character string as general code, elliptic curve difficulty encryption and setting hierarchical encryption server ,etc. , to simplify the consumer-attestation ,prevent data from leaking and improve the system efficiency. PBC eodebase and C program are used to realize the hiberarchy model and the results show that the scheme is available and effective.