计算机工程与应用 ›› 2008, Vol. 44 ›› Issue (23): 133-135.DOI: 10.3778/j.issn.1002-8331.2008.23.041

• 网络、通信、安全 • 上一篇    下一篇

具有PFS特性的流媒体安全通信协议

王 赜,刘文菊,柯永振   

  1. 天津工业大学 计算机技术与自动化学院,天津 300160
  • 收稿日期:2007-10-24 修回日期:2008-01-20 出版日期:2008-08-11 发布日期:2008-08-11
  • 通讯作者: 王 赜

Scalable streaming media secure communication protocol with perfect forward secrecy

WANG Ze,LIU Wen-ju,KE Yong-zhen   

  1. School of Computer Technology and Automation,Tianjin Polytechnic University,Tianjin 300160,China
  • Received:2007-10-24 Revised:2008-01-20 Online:2008-08-11 Published:2008-08-11
  • Contact: WANG Ze

摘要: 设计面向可伸缩媒体流的安全通信协议以保证可伸缩流媒体服务系统能够为相同的节目源设计不同质量等级的输出码流并确保安全传输。通信协议由客户端、认证服务器和视频服务器3个实体的交互完成,通过基于Diffie-Hellman算法的密钥交换和基于证书机制的双向认证确保产生的临时会话密钥的机密性和通信过程的PFS特性。通过采用CBC模式的对称加密算法、ID与随机数的串接以及用临时密钥加密密钥协商消息等安全机制来确保增强的安全性以抵抗反射攻击和中间人攻击。

关键词: 多媒体安全, 完美前向保密, 身份认证, 可伸缩流媒体

Abstract: This paper presents a communication protocol of streaming media to ensure secure live transferring of scalable quality video programs over network.In the protocol,client,authentication server and video server collaborate for authentication,generation of session keys and transferring of encrypted streaming media.Bi-direction authentication is carried out by bi-direction challenge method and method based on public-key cryptography.Perfect forward secrecy is provided by adoption of Diffie-Hellman key exchange steps.

Key words: multimedia security, perfect forward secrecy, authentication, scalable streaming media