本文基于NASD融合SAN为一种适合海量存储的安全网络存储系统SNS,满足高带宽、大规模、易扩展的海量存储需要.给出了存储系统的网络协议,由可信接入认证协议和安全信道协议两部分组成.协议在两轮交互中就完成了用户与服务器间的身份认证和长期密钥确认,并在首轮交互中完成对用户端平台的身份认证和完整性校验,提高了协议执行的效率.
Merging SAN and NASD into a new network storage system was proposed. Such system has high bandwidth,expansibility, large-scale, which suitable for mass storage system.At the same time, a secure trusted storage network protocol for the new system was proposed. Such protocol is composed of two sub-network protocol, trusted access protocol and secure channels protocol. The protocol will achieve authentication and key confirmation in two rounds between the SNS-server and the user. At the same time, the protocol could realize the platform authentication and platform integrity verification in the first round of protocol interaction, which would improve the efficiency of the protocol.