國軍現階段在雲端化過程中,各軍種仍存在獨立作業,導致無法有效整合善用資源,其原因不外乎存取權限管控及身分認證之考量。本研究透過跨服務平台設計,使用者不僅可存取原服務中心之服務,更可補足其無法提供的服務,以有效延伸資源。針對跨服務平台間存取控制方式之安全性問題,本研究提出一個植基橢圓曲線離散對數難題(Elliptic Curve Discrete Logarithm Problem,ECDLP)的存取方法,讓使用者可以在合法的權限範圍內快速又安全的存取資料,同時建置可離線作業之身分認證機制,避免服務中斷。以救災資源為例,風災來臨前,各級部隊超前部署至各災區,常面臨氣象資源不足,而災害來臨後,災區第一線狀況掌握無法即時更新等問題,更進而著墨於未來國軍走向雲端化後,如何兼顧跨平台資源存取及資料傳遞的安全性問題。
The military services of our troops currently in the process of cloud still exist independent operations, which lead to not effectively integrate and use resources. The reason is nothing more than access control and identity certification considerations. Through cross-services platform design of our study, users can access the services of the original service centers, and also can complement the services which the center did not provide to effectively extend resources. For the security problem of the method of access control for cross-services platform, we propose an access controlling method based on elliptic curve discrete logarithm problem (ECDLP), allowing users to access information quickly and safely in the legal limit of authority, while building the identity authentication mechanism of offline operations to avoid service interruption. Take disaster relief for instance, before hurricane coming, every levels of troops deployed in advance to all the affected areas often face a lack of meteorology resources. After disaster strikes, the first line of the disaster situation cannot be real-time updates to grasp. Furthermore dwell on the future of our troops toward the cloud-based, how to balance the cross-platform access to resources and information transfer security issues.