为了有效地保证终端、接入交换路由器和认证中心的安全,本文提出了一体化网络中可证明安全的三方认证协议.该协议实现了终端和认证中心之间及接入交换路由器和认证中心之间的相互认证,不仅可以有效防止非授权终端接入网络,还可以防止伪造的认证中心和接入交换路由器对终端的欺骗.在BR扩展模型下,可证明该协议是安全的.通过性能分析得出,协议具有很高的效率.
To ensure the security of terminal, access switch router and authentication center, a provably secure three-party authentication protocol PSTPAP is proposed in this paper. This protocol realizes mutual authentication between terminal and authentication center, as well as between access switch router and authentication center, so it can effectively block unauthorized terminal access to network, prevent unauthentic authentication center and access switch router from cheating the terminal. It is provably secure based on BR extended model. Performance analysis show that the protocol is very efficient.