论文部分内容阅读
设计了一种OPC现场总线安全代理方式,采用基于USBkey密钥存储及数字签名载体的X.509身份认证体系及3向鉴别认证方式,会话数据加密采用AES算法及密码分组链接CBC工作方式,保证了身份认证及数据传输的安全。采用客户端数据包截获的方式保证了OPC代理对原有用户程序的透明。
An OPC field bus security agent was designed, which adopted X.509 authentication system based on USBkey key storage and digital signature carrier and 3-way authentication authentication mode. The session data encryption adopted AES algorithm and password grouping to link CBC working mode, Authentication and data transmission security. The method of intercepting client packets ensures that the OPC proxy is transparent to the original user program.