详细论述了Kerberos协议的认证过程及主要缺陷,介绍了基于身份的公钥密码学理论,提出了基于身份的可认证密钥协商协议,在此基础上对Kerberos协议进行改进,使其具有更高的安全性.通过详细的安全性能分析,该方案使系统更安全,更加容易管理和维护.
The Kerberos protocol was discussed in detail,the identity based cryptography was introduced and then an authenticated key agreement protocol was proposed,which can improve the Kerberos system.The analysis of security shows that this scheme makes the system more secure and the maintenance becomes easier.