提出基于身份的多域间跨域认证技术,采用双线性映射及短签名技术实现任意不同域实体间的双向认证,解决现有方案中密钥托管固有的安全隐患及传统方案中证书管理复杂和网络瓶颈问题.经模拟与证明分析,提出的方案具有较好的匿名性和安全性,支持双向实体匿名认证,适用于大型分布式网络安全联盟认证机制.
An identity-based cross-domain authentication protocol is given out, which is among domains in large-scale distributed collaborative computing network. It adopts bilinear mapping and short signature technology to achieve mutual authentication between entities in different domains, and can overcome the complexity of certificate transmission and bottlenecks in the scheme of PKI-based. The analogue and analysis show that this scheme has anonymity, security and can support mutual anonymous authentication, and it is applied to the security alliance authentication mechanism in large distributed network.