在分析现有异构无线网络认证方法的优点和不足的基础上,提出一种结合证书公钥和身份公钥的混合认证模型.在该认证模型中,用户与本地认证服务器及外地认证服务器之间的认证采用身份公钥体制,本地认证服务器与外地认证服务器之间采用证书公钥体制.该混合认证模型具有匿名性,可扩展性好,降低了资源消耗,符合异构无线网络的应用需求.安全性分析表明该模型在C-K模型下是安全的.
The advantages and disadvantages of existing authentication mechanisms for heterogeneous wireless networks were analyzed. A hybrid authentication model was proposed, which integrates certificate-based public key cryptography and identity-based public key cryptography. In this authentication model, the authentication between users and authentication servers is based on identity-based cryptography, while the authentication between home and foreign authentication server is based on certificate-based cryptography. The hybrid authentication model, with user anonymity, high scalability and low resource consumption, can meet the requirements of heterogeneous wireless networks elegantly. Security analysis shows that the proposed scheme is provably secure in the C-K (CanettiKrawczyk) model.