Font Size: a A A

The Analysis And Research Of USBKEY In PKI System Structure

Posted on:2011-03-25Degree:MasterType:Thesis
Country:ChinaCandidate:Y Q SunFull Text:PDF
GTID:2178330338475321Subject:Physical Electronics
Abstract/Summary:PDF Full Text Request
With the development of the open network and the clearness of security problem, PKI (Public Key Infrastructure) network security system is now in widespread use. As a combination of techniques of modern cryptography, smart card technology and USB technology, USBKEY which replaces the original authentication method is widely used in various areas of PKI applications. USBKEY's main function is to store the private key, digital certificates and digital signatures, it is the carrier of the digital certificate in internet bank and it takes the important responsibility of protecting client certificates and private key security. Therefore, the USBKEY security plays a vital role in protecting the bank transaction.At present, there are hundreds of USBKEY companies, and the properties of the products are to some extent identical but with minor differences as well as the qualities. Some USBKEY possesses fixed secret for improving transaction speed; Some USBKEY's secret key is unsafely stored that can be rewritten; some USBKEY's PIN transferred unencrypted. Because of its security problems which are led by hardware or software design, USBKEY can not provide total security protection to bank transaction to a certain extent.According to the secure problem in USBKEY, this thesis focuses on the research of USBKEY of some representative banks. It put emphasis on USBKEY hardware composition and each module's functions and work processes of the chip operating system. According to the analysis of existed security problems, this thesis designs three testing methods to the secret key, digital signature and PIN.After testing USBKEY adopting each of these three programs, while analyzing and comparing the results, I have found the security risks and vulnerabilities, and put forward the corresponding solutions. It will create conditions for safe use and further application of USBKEY.
Keywords/Search Tags:PKI(Public Key Infrastructure), USBKEY, COS
PDF Full Text Request
Related items