A greate range of security challenges exist in IP-based distributed multimedia communication system. The solution, not only to provide information confidentiality, message integrity, endpoint authentication and other basic security services, but also must be fully supports dynamic IP information system in collaboration, flexibility, groups communication, and use easily about application requirements.The paper first analyzes the relevant security protocols and models. After studying the Instlink system architecture, designed and implemented a security architecture based on TLS protocol.The system is powerful. Through the CA center, achieves a reliable third-party authentication based on X.509digital certificates; According to PKI system and TGDH protocol, respectively achieves a simple session key management and group key management.At the same time,in the session key negotiation process, supports a flexible suite of encryption algorithm selection;Through the establishment of a two-buffer model, ensures the system on the basis of safe and reliable, can improve and enhance its performance.At the result, this security system can run in Instlink reliably. |