计算机与现代化 ›› 2009, Vol. 1 ›› Issue (10): 185-3.doi: 10.3969/j.issn.1006-2475.2009.10.052

• 信息安全 • 上一篇    下一篇

基于时间同步的动态口令身份认证的研究

苏武,王命延,童星,邵风瑞   

  1. 南昌大学信息工程学院,江西 南昌 330031
  • 收稿日期:2008-10-06 修回日期:1900-01-01 出版日期:2009-10-15 发布日期:2009-10-15

Research on Dynamic Password Identity Authentication Based on Time Synchronization

SU Wu,WANG Ming-yan,TONG-Xing,SHAO Feng-rui   

  1. College of Information Engineering, Nanchang University, Nanchang 330031, China
  • Received:2008-10-06 Revised:1900-01-01 Online:2009-10-15 Published:2009-10-15

摘要:

简述现有的几种动态口令技术,并着重介绍基于时间同步的动态口令技术。介绍其实现原理、工作过程,对其安全性及不足处进行分析,并对其在防御中间人攻击及可能产生的时间偏移的问题给出解决方案,以使其更具安全性,更加完善。

关键词: 动态口令, 时间同步, 时间偏移, SSL技术

Abstract:

This paper introduces some current dynamic password techniques, and emphasizes the identity authentication based on the time synchronization mechanism in these techniques. Then it introduces this method’s principle, work progress, and analyses its security and shortage. At last, it gives some solution schemes on its lack of defending second hand’s attack and time excursion to make it safer and perfect.

Key words: dynamic password, time synchronization, time excursion, SSL technique