论文部分内容阅读
提出一种基于嵌入式可信终端的可信网络接入架构,为网络安全接入提供新的思路和手段.该架构能够通过嵌入式系统为接入终端构建可信计算平台,通过双向身份鉴别协议实现接入双方的身份鉴别,通过双向非对等评估协议实现双方计算平台环境鉴别与评估.和现有网络接入架构相比,增强了接入的安全性,部署灵活,实用性强.
This paper proposes a trusted network access architecture based on embedded trusted terminal to provide a new idea and means for network security access.The architecture can build trusted computing platform for access terminal through embedded system and through two-way identity authentication The protocol realizes the authentication of both access parties and realizes the identification and evaluation of the computing platform environment of both sides through the bi-directional non-peer evaluation protocol. Compared with the existing network access architecture, the access security is enhanced, and the deployment is flexible and practical.