Two-way network access authentication method based on digital certificate

A technology of digital certificates and authentication methods, applied in user identity/authority verification and key distribution, can solve the problems that network access authentication cannot realize non-host network access authentication, and cannot authenticate server identity authentication, etc., so as to improve security and practicability, improve The effect of implementing cost and improving management efficiency

Active Publication Date: 2013-08-07
NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP
View PDF5 Cites 20 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] Aiming at the technical problem that network access authentication cannot realize non-host network access authentication in the prior art, a method capable of realizing network access authentication of network equipment and security protection equipment is disclosed
At the same time, the invention also discloses a method for authenticating the authentication server, which solves the technical problem that the authentication server cannot be authenticated in the prior art
The invention also discloses a method for simultaneously realizing management key negotiation in the process of network access authentication, which solves the management problem in the later stage of network access authentication in the prior art

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Two-way network access authentication method based on digital certificate
  • Two-way network access authentication method based on digital certificate

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0026] The specific implementation manners of the present invention will be described in detail below in conjunction with the accompanying drawings.

[0027] Such as figure 1 As shown in the divided area diagram of network access authentication, the two-way network access authentication method based on digital certificates disclosed in the present invention divides the network access authentication system into an area to be accessed and a trusted area, and the area to be accessed includes at least one customer to be authenticated The trusted zone includes an authentication server and at least one trusted client that has passed the authentication.

[0028] Such as figure 2 The flow chart of the two-way network access authentication method based on digital certificates is shown. The invention discloses a two-way network access authentication method based on a digital certificate, which specifically includes the following steps:

[0029] Step 1, divide the network access auth...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of network security and discloses a two-way network access authentication method based on a digital certificate. The two-way network access authentication method comprises the following steps of step 1, dividing a network access authentication system into an access region and a confidence region and accessing a client to be authenticated to a physical port of a confidence client; step 2, actively initializing the network access authentication to the client to be authenticated after receiving access information of the client to be authenticated by an authentication server; and step 3, after submitting equipment authentication information to the authentication server after the client to be authenticated receives the access authentication, starting the authentication after the authentication server receives the authentication information and feeding the authentication result back to the client to be authenticated. The client to be authenticated is physically connected with the confidence client and the authentication server actively initializes the network access authentication to the client to be authenticated after receiving the access information, so that the authentication of network access identities of router equipment, exchange equipment, security safety equipment and the like is realized and the safety and the practicality of the network are improved.

Description

technical field [0001] The invention relates to the technical field of network security, and discloses a two-way network access authentication method based on digital certificates. Background technique [0002] Network access authentication technology plays a vital role in ensuring the security and trustworthiness of network entities and the stability and reliability of network structures. Therefore, at present, the industry has carried out many fruitful researches and practices on network access authentication technology, and proposed many effective network access authentication technical means. However, the existing network access authentication technologies mainly target network access entities as hosts, and the verification process is mainly implemented by using or based on the 802.1x protocol. These technologies are limited to host access, and cannot meet some occasions with high security protection requirements, as well as the network access authentication requirement...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L9/32H04L9/08
Inventor 黎锐董贵山魏勇何智王金涛林俊燕
Owner NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products