信息网络安全 ›› 2016, Vol. 16 ›› Issue (7): 1-6.doi: 10.3969/j.issn.1671-1122.2016.07.001

• •    下一篇

一种高效实用的基于云服务的数字签名方案研究

张永强1, 卢伟龙1, 唐春明2,3   

  1. 1.广州大学数学与信息科学学院,广东广州510106
    2.数安时代科技股份有限公司,广东广州510100
    3.广东数学与交叉科学省普通高校重点实验室(广州大学),广东广州510006
  • 收稿日期:2016-06-07 出版日期:2016-07-20 发布日期:2020-05-13
  • 作者简介:

    作者简介: 张永强(1977—),男,广东,高级工程师,博士,主要研究方向为云计算、信息安全、密码学;卢伟龙(1988—),男,广东,硕士,主要研究方向为密码学与信息安全;唐春明(1972—),男,湖南,教授,博士,主要研究方向为云计算、信息安全、密码学。

  • 基金资助:
    国家自然科学基金[11271003];广东省自然科学基金重大基础研究培育项目[2015A030308016];广东省教育厅基础研究重大项目[2014KZDXM044];教育部高等学校博士学科点专项科研基金联合资助课题(博导类联合)[20134410110003]

Research on An Efficient and Practical Cloud-based Digital Signature Scheme

Yongqiang ZHANG1, Weilong LU1, Chunming TANG2,3   

  1. 1. School of Mathematics and Information Science, Guangzhou University, Guangzhou Guangdong 510006, China
    2. Global Digital Cybersecurity Authority Co., Ltd., Guangzhou Guangdong 510100, China
    3. Key Laboratory of Mathematics and Interdisciplinary Sciences of Guangdong Higher Education Institutes, Guangzhou University, Guangzhou Guangdong 510006, China)
  • Received:2016-06-07 Online:2016-07-20 Published:2020-05-13

摘要:

云计算技术的迅速发展,使得基于云服务的数字签名模型走向实用,其可靠、便捷、按需地通过网络来访问密码运算基础设施的特性越来越受到企业的青睐。文章提出一种在云计算环境下用于生成数字签名的技术方案,该方案实现了对证书及其私钥的集中管理。此外,方案采用分布式处理与密钥分割相结合的方式确保证书与私钥的安全。方案对于云签名服务平台的密码运算提出了较低的要求,满足了大量用户并发处理的需求。

关键词: 数字签名, 云计算, 证书, 私钥

Abstract:

With the rapid development of cloud computing, models of cloud-based digital signature become practical. More enthusiastic responses from enterprises confirm that cloud computing plays an important role in many fields of IT with its features of reliable, convenient, on-demand network access to security infrastructures that perform cryptographic operations. This paper proposes a scheme of generating digital signature in the cloud. The scheme achieves centralized management of certificates and their private keys, and ensures the security of certificates and their private keys by using the combination of distributed processing with key segmentation. Meanwhile, the scheme presents lower performance requirements of cryptographic operations for cloud signature service platform, which meet the need of simultaneous processing from a large number of users.

Key words: digital signature, cloud computing, certificate, private key

中图分类号: