密码编码学与网络安全原理与实践_ch01课件_第1页
密码编码学与网络安全原理与实践_ch01课件_第2页
密码编码学与网络安全原理与实践_ch01课件_第3页
密码编码学与网络安全原理与实践_ch01课件_第4页
密码编码学与网络安全原理与实践_ch01课件_第5页
已阅读5页,还剩20页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

1、密码编码学与网络安全原理与实践_ch01,Cryptography and Network SecurityOverview not on the chance of his not attacking, but rather on the fact that we have made our position unassailable. The Art of War, Sun Tzu,密码编码学与网络安全原理与实践_ch01,Roadmap,Cryptographic algorithms symmetric ciphers asymmetric encryption hash functi

2、ons Mutual Trust Network Security Computer Security,密码编码学与网络安全原理与实践_ch01,Standards Organizations,National Institute of Standards need protection from disclosure, tampering, or destruction; be notarized or witnessed; be recorded or licensed,密码编码学与网络安全原理与实践_ch01,Security Services,X.800: “a service pro

3、vided by a protocol layer of communicating open systems, which ensures adequate security of the systems or of data transfers” RFC 2828: “a processing or communication service provided by a system to give a specific kind of protection to system resources”,密码编码学与网络安全原理与实践_ch01,Security Services (X.800

4、),Authentication - assurance that communicating entity is the one claimed have both peer-entity & data origin authentication Access Control - prevention of the unauthorized use of a resource Data Confidentiality protection of data from unauthorized disclosure Data Integrity - assurance that data rec

5、eived is as sent by an authorized entity Non-Repudiation - protection against denial by one of the parties in a communication Availability resource accessible/usable,密码编码学与网络安全原理与实践_ch01,Security Mechanism,feature designed to detect, prevent, or recover from a security attack no single mechanism tha

6、t will support all services required however one particular element underlies many of the security mechanisms in use: cryptographic techniques hence our focus on this topic,密码编码学与网络安全原理与实践_ch01,Security Mechanisms (X.800),specific security mechanisms: encipherment, digital signatures, access control

7、s, data integrity, authentication exchange, traffic padding, routing control, notarization pervasive security mechanisms: trusted functionality, security labels, event detection, security audit trails, security recovery,密码编码学与网络安全原理与实践_ch01,Model for Network Security,密码编码学与网络安全原理与实践_ch01,Model for N

8、etwork Security,using this model requires us to: design a suitable algorithm for the security transformation generate the secret information (keys) used by the algorithm develop methods to distribute and share the secret information specify a protocol enabling the principals to use the transformatio

9、n and secret information for a security service,密码编码学与网络安全原理与实践_ch01,Model for Network Access Security,密码编码学与网络安全原理与实践_ch01,Model for Network Access Security,using this model requires us to: select appropriate gatekeeper functions to identify users implement security controls to ensure only authorised users access designated information or resources,密码编码学与网络安全原理与实践_ch01,Summary,topic roadmap & standards organizations security concepts: confidentiality, integrity, availability X.800 se

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论