Font Size: a A A

Openssl-based Ssl Protocol Design And Improvement

Posted on:2012-12-13Degree:MasterType:Thesis
Country:ChinaCandidate:Y F WeiFull Text:PDF
GTID:2218330338956127Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
As the electronic commerce in world wide range of application,.Online trading data security issues have become an important part of the electronic commerce field. Secure Sockets Layer as a security protocol is the most widely used protocol to protect secure communication.SSL use layered and handshake mechanism to provide security,integrity,undeniable function,server certificate and optional client authentication and so on security services for TCP/IP connection.This paper introduces the development history of SSL protocol and the present situation of the protocol.and then analyze the four level of SSL protocol in detail,include record protocol,handshake protocol,modify cipher specification protocol and alter protocl.Analyze the most important part of SSL in depth.Expound how the shared key which protect the data security of both side of the communication is generated in detail.For the importance of the SSL in the Internet,key recovery technology is more important when client or server lost their shared key because of the unsettled network.KRA has propose a lot of papers in key recovery field,include key recovery technology of IPSec and SSL,and common key recovery block and so on.We propose a key recovery block to improve the defect of the key recovery technology.To let the improved SSL protocol hava the key recovery function,we bring in the key recovery information to the KRB.At the same time we prove the new protocol better than original protocol in efficiency. We introduce the generation of KRB and KRI,and analyze the process of key recovery when key lost.Finally in the basis of OpenSSL and SSL realized the signature digital envelops applications,realized based on the safety of SSL protocol message system.This system is solved resisted the prevention and resolve the data confidential function.
Keywords/Search Tags:SSL, OpenSSL, KRB, KRI, secure message
PDF Full Text Request
Related items