为了使得用户间能在公共数据网络进行安全通信,利用椭圆曲线上双线性映射的特性提出了一个身份基认证密钥协商协议,利用双线性对生成会话密钥,为随后的通信提供机密性、完整性保证。该协议实现了通信双方的相互身份认证功能,使通信双方能确认对方的身份,同时还提供了密钥协商的功能。经过分析表明该协议满足较高的安全性,提供了已知密钥安全性、完善前向保密性、密钥泄露安全性、未知密钥共享安全性和密钥控制安全等安全属性,并且新协议在计算效率和安全性方面取得了较好的平衡,更加适合现实网络通信的需要。
Aiming to solve the communication security problems which in a public network,an ID-based mutual authentication and key agreement scheme is proposed in this paper,in which some characteristics of bilinear map are used. The functions implemented by this protocol include anthentication,guaranteed the integrity and agree the session key fairly between two communications. Moreover,this protocol provides some security properties such as known key security,perfect forward secrecy,key-compromise impersonation,unknown key -share resilience and key control. This protocol has better security characteristic and keeping with the nice efficience,more suited to realities of the need of internet communications.