透過您的圖書館登入
IP:18.117.11.131
  • 學位論文

高度安全性代理人之設計

The Design of a Strong Security Agent

指導教授 : 鄭鳳生
若您是本文的作者,可授權文章由華藝線上圖書館中協助推廣。

摘要


本研究提出一個在網際網路(Internet)上的高度安全性(Strong Security)之安全代理人(Secure Agent)的架構,目的是在改善在現有的網路安全通訊環境中,因美國對於加解密技術的出口限制,而造成安全保護不足的問題,而這個問題在現今網際網路發展日益普及的今天,更是令人重視。 在網際網路上最熱門的應用是WWW,目前在Web Server及Browser上,大多是使用SSL(Secure Socket Layer)[01][02]來做為通訊雙方資料傳輸時的保護,但是如前面所述的出口限制,使得資料在傳輸時的加密保護所用的KEY的長度只有40 bits,而要破解這樣的加密所需要的設備及技術,以現今的環境來說,是不難達成的[17]。 所以本論文所要提供的,就是在不需更動現有的Web Browser以及Web Server的前提之下,在Web Browser端加上BrowserAgent,以及在Web Server端加上ServerGate,使得Web Browser及Web Server透過BrowserAgent以及ServerGate傳輸資料時,能夠使用128 bits的加密保護。此外,本論文亦設計認證管理程式以提供BrowserAgent及ServerGate申請以及管理認證,同時本認證管理程式提供三種金鑰長度的認證需求,使得BrowserAgent和ServerGate在取得認證上更為便利且能獲得更高的安全性。如此,對於傳輸的資料,能有更高程度的保護。

並列摘要


In our research, we propose a structure about Strong Security Agent on the Internet. Due to the U.S. Government’s restriction in strong security software export, we use this kind of the software will face to a problem about secure degree is not enough. At this moment, the development of Internet has been grown on widely, and this problem will be considered very carefully. Hence, this paper’s objective is to enhance the communication’s secure degree between client and server, e.g. browser and web server. SSL (Secure Socket Layer) now is widely use in Browser and web servers secure communication, and the newest version is version 3. SSL protocol uses the session key to protect the data in transmission. According to the export restriction by the U.S. government, the session key’s length was bound by 40 bits, anyone want to cracked this length of session key, all the equipment and technology he must have will not difficulty to get, and the degree of protection has been proven that is not enough. [17] So, in this paper, we will implement a system that part into two subsystems, one is called BrowserAgent, and other is called ServerGate. BrowserAgent and ServerGate are independent applications running with the browser and web server in the same computer. The browser and web server’s communication are over the BrowserAgent and the ServerGate, the secure degree (key’s length) will be upgrade to 128 bits or more, this kind of key’s length is better than U.S. domestic version. Additionally, we also design a Certificate Manager program to provide certificate application and certificate management to BrowserAgent and ServerGate. The Certificate Manager program can provide three kinds of key length of certificate, and this will make BrowserAgent and ServerGate get the certificate easier and securer.

參考文獻


“SSL Protocol Version 3.0”
November 18, 1996
[03]“How SSL Works”,
[04] Ari Luotonen
December 14, 1995

延伸閱讀