The Experts below are selected from a list of 6552 Experts worldwide ranked by ideXlab platform
Wang Xing-wei - One of the best experts on this subject based on the ideXlab platform.
-
FSKD - Secure email system based on true IPv6 address access
2015 12th International Conference on Fuzzy Systems and Knowledge Discovery (FSKD), 2015Co-Authors: Sun Meng, Wang Xing-weiAbstract:Network security problems still exist when IPv4 transfers to IPv6. The current Email framework neither authenticates the sender nor traces the source of the mail, so even find a spam, the method is just to reject the mail or insert the mail source into “blacklist”, and both of these methods can't deracinate the generation of spam. For this reason, this paper designs secure email system based on true IPv6 address access. It divides the Authentication to inter-Domain and intra-Domain Authentication. Inter-Domain Authentication is used to authenticate the mail sender's Domain. It combines path-based Authentication, encryption-based Authentication and trust and prestige system-based Authentication methods in order to support both mail forwarding and mail list. Authentication efficiency can be further improved by organizing Authentication order properly. Intra-Domain is used to affirm the sender's IP address which is used to trace the sender. It supports user to move by combining the fixed and changing IP address. After testing, this system is both feasible and effective.
-
An improved Web cross-Domain Authentication scheme based on consistent hashing
Journal of Northeast Normal University, 2013Co-Authors: Wang Xing-weiAbstract:In this paper,an improved Web cross-Domain Authentication scheme is proposed.In the proposed scheme,a map between Authentication servers and virtual nodes on the cyclic space of consistent hashing is established.The application server selects an Authentication server for its Authentication request by calculating the hash value of a unique string.With this scheme,it is very easy to add or remove a certain Authentication server at a lowest cost.The proposed scheme provides a better way to balance load and realize redundancy.The proposed scheme transfer Authentication messages through Web protocols,and it is much suitable for internet services that require better performance and scalability without too much security.
-
Protocol Model Based on Cross-Domain Authentication and Key Agreement
Computer Engineering, 2012Co-Authors: Wang Xing-weiAbstract:In this paper,a new protocol which combines cross-Domain Authentication and key agreement together is proposed to solve the repeat computing problem in both procedures.Utilizing public key cryptography,the proposed protocol combines both cross-Domain Authentication protocol and key agreement protocol,and implements both functions in a single protocol with less computational resources,storage resources and network bandwidth.Theoretical analysis and performance comparison results show that the proposed protocol can provide confidentiality,Authentication,integrity,nonrepudiation and other security guarantees.Besides,it has a high level of efficiency.
-
PAAP - A Cross Heterogeneous Domain Authentication Model Based on PKI
2011 Fourth International Symposium on Parallel Architectures Algorithms and Programming, 2011Co-Authors: Yao Yao, Wang Xing-wei, Sun XiaoguangAbstract:This essay proposes a new cross heterogeneous Domain Authentication model mainly based on PKI, and designs the details of Authentication processes in different situations. The model achieves cross Domain Authentication between PKI Domain and Kerberos Domain effectively, and supports mutual Authentications. Theoretical analysis shows that the proposed scheme has good compatibility, expansibility and reliability. Therefore, this model is suitable for using in large-scale network environment mainly based on PKI.
-
A cross-Domain Authentication protocol based on hypercube
2011 Chinese Control and Decision Conference (CCDC), 2011Co-Authors: Yao Yao, Wang Xing-weiAbstract:In this article, we present a cross-Domain protocol model based on hypercube, analysis of the theorem and simulation results. Utilizing the structural features of hypercube, the model supports mutual Authentication between the entities in different trust Domains. Compared with traditional cross-Domain Authentication model, the proposed model reduces the register workload among Authentication servers and simplifies the distributed and management of shared keys among Authentication servers. The model could also avoid network bottleneck and single point collapse problems. Analysis shows that the protocol model is secure and reliable. Therefore, the application servers can effectively carry out access control to ensure network security.
Li Chang-yun - One of the best experts on this subject based on the ideXlab platform.
-
Trust-oriented Single Sign-On in Open Network Environment
Computer Engineering, 2010Co-Authors: Li Chang-yunAbstract:In open network environment, the traditional Single Sign-On(SSO) is easy to lead to single point failure and difficult to solve the problems of cross-Domain Authentication. To resolve the above-mentioned problems, by considering the identity trust mechanism and the behavior trust mechanism, a trust-oriented Peer-to-Peer Single Sign-On system architecture is proposed. A Single Sign-On trust model based on subjective logic is built, the formal description of trust is given in this model, and the trust evaluation mechanism is established. This model is applied in the cross-Domain Authentication, and the results show that the model is feasible.
Jun Liu - One of the best experts on this subject based on the ideXlab platform.
-
trustroam a novel blockchain based cross Domain Authentication scheme for wi fi access
Wireless Algorithms Systems and Applications, 2019Co-Authors: Jun LiuAbstract:Cross-Domain roaming in Wi-Fi networks is ubiquitous and the frequency of global roaming of users has increased dramatically in recent years. To ensure network security, it is important to authenticate users belonging to different Domains. Existing solutions like eduroam leverage a centralized and hierarchical architecture to authenticate users, which leads to serious performance and security issues in practice. In this paper, we propose Trustroam, a novel cross-Domain Authentication scheme in Wi-Fi networks based on blockchain. Different from traditional hierarchical solutions, Trustroam authenticates users and servers in a distributed and anonymous manner, avoiding several serious problems such as single point of failure and privacy leakage. Through the distributed consensus mechanism and mutual Authentication, our scheme is highly fault tolerant to handle compromised server attacks. We implemented the Trustroam prototype in a real testbed. Experimental and evaluation results show that our scheme is superior to existing hierarchical solutions in terms of scalability, security and privacy preserving. Besides, Trustroam is an effective solution that can be conveniently and incrementally deployed in practical environments.
-
WASA - Trustroam: A Novel Blockchain-Based Cross-Domain Authentication Scheme for Wi-Fi Access
Wireless Algorithms Systems and Applications, 2019Co-Authors: Jun LiuAbstract:Cross-Domain roaming in Wi-Fi networks is ubiquitous and the frequency of global roaming of users has increased dramatically in recent years. To ensure network security, it is important to authenticate users belonging to different Domains. Existing solutions like eduroam leverage a centralized and hierarchical architecture to authenticate users, which leads to serious performance and security issues in practice. In this paper, we propose Trustroam, a novel cross-Domain Authentication scheme in Wi-Fi networks based on blockchain. Different from traditional hierarchical solutions, Trustroam authenticates users and servers in a distributed and anonymous manner, avoiding several serious problems such as single point of failure and privacy leakage. Through the distributed consensus mechanism and mutual Authentication, our scheme is highly fault tolerant to handle compromised server attacks. We implemented the Trustroam prototype in a real testbed. Experimental and evaluation results show that our scheme is superior to existing hierarchical solutions in terms of scalability, security and privacy preserving. Besides, Trustroam is an effective solution that can be conveniently and incrementally deployed in practical environments.
Hongyu Dong - One of the best experts on this subject based on the ideXlab platform.
-
Research of the Improved Identity Authentication System Based on PKI in Virtual SAN
2010 International Conference on Internet Technology and Applications, 2010Co-Authors: Dongmei Zhou, Hongyu DongAbstract:Enhancing the security level of network, where storage devices located in, is an effective measure for data security after storage network virtualization. In the view of the shortcomings in traditional PKI identity Authentication system, such as inefficient Authentication and complex cross-Domain Authentication, we propose an improved identity Authentication system for virtual SAN, and introduce two concepts-"Authentication Service Point" and "Cross-Domain Authentication Manager". We hope to enhance the efficiency of PKI identity Authentication system through the realization of role agents and "Double Certificates", and it will be a solid foundation for creating a secure and stable operating environment of virtual SAN.
Chi Zhang - One of the best experts on this subject based on the ideXlab platform.
-
IRBA: An Identity-Based Cross-Domain Authentication Scheme for the Internet of Things
Electronics, 2020Co-Authors: Xudong Jia, Shi Yin, Yan Zhao, Xinda Cheng, Chi ZhangAbstract:The incredible development of Internet of things technology promotes the integration of application systems, which enable people to enjoy the convenience of multiple application services through a single intelligent device or terminal. In order to implement value exchange and information sharing between different applications, cross-Domain access is inevitable. In order to prevent illegal access, identity Authentication is necessary before the terminal accesses the service. Because of the need to introduce a trusted third party, the traditional centralized Authentication model not only destroys the autonomy and flexibility of the application system, but also causes issues such as single point of failure and hidden dangers of unilateral control. This paper proposes an identity-based cross-Domain Authentication scheme for the Internet of Things. This scheme uses the Blockchain as a decentralized trust anchor instead of the traditional certificate of authority, and uses the identity-based self-Authentication algorithm to replace the traditional PKI Authentication algorithm. The scheme proposed in this paper implements a decentralized Authentication model, which can guarantee the autonomy and initiative of the security Domain.