论文部分内容阅读
在大规模分布式计算机应用系统中 ,由于涉及的用户数量多、分布广 ,对系统的安全要求不同 ,所以 ,集中的安全管理机制实现困难 ,并且潜在风险巨大。基于智能 IC卡的公共钥加密与签名方法为实现非集中管理提供安全可靠的解决方法。从目前IC卡的性能上看 ,智能 IC卡是一个完备的微型计算机系统 ,构造基于智能 IC卡的公共钥签名系统主要应考虑高层次安全协议的实现。本文在给出基于 RSA、DSA和零知识等实现公共钥签名算法的基础上 ,比较分析了它们在 IC卡上实现时的优势和限制因素。这对选择不同算法 ,在 IC卡上实现公共钥签名系统有重要的指导意义
In the large-scale distributed computer application system, due to the large number of users involved, the wide distribution and the different security requirements of the system, the centralized security management mechanism is difficult to implement and has huge potential risks. Public key encryption and signature method based on smart IC card provide a safe and reliable solution for non-centralized management. Judging from the current IC card performance, the smart IC card is a complete micro-computer system. The key public key signature system based on smart IC card should mainly consider the realization of high-level security protocols. Based on the RSA, DSA and zero-knowledge-based public key signature algorithms, this paper compares and analyzes their advantages and limitations when implemented on IC cards. This is an important guide for choosing different algorithms and implementing a public key signature system on an IC card