- 无标题文档
查看论文信息

中文题名:

 云名片安全共享系统的通信安全设计与云端数据保护    

姓名:

 陈鹏    

学科名称:

 信息安全    

学生类型:

 学士    

学位名称:

 工学学士    

学校:

 中国人民大学    

院系:

 信息学院    

专业:

 信息安全    

第一导师姓名:

 秦波    

完成日期:

 2016-05-18    

提交日期:

 2016-05-18    

中文关键词:

 电子名片 访问控制 数字加密 身份认证 隐私保护    

外文关键词:

 Electronic business card Access control Digital encryption Identity authentication Privacy protection     

中文摘要:
& ltp& gt当今社会,信息科技迅速发展,各类社交软件如微信、微博、qq等层出不穷,个人信息的条目(qq号、微信号、微博号等)也越来越多,这使得人与人之间的信息交换愈发困难。虽然市面上的一些电子名片应用,成功地将个人信息整合,一定程度上方便了用户的信息交互,但普遍存在应用场景单一、隐私数据易泄露、访问控制过于粗粒度以及云端数据安全无法保证等缺陷。& lt/p& gt & ltp& gt针对这些问题,我们设计了一款主打安全性的系统&mdash&mdash云名片安全共享系统,旨在最大程度地保护用户隐私与通信安全。系统采取TOTP+IBE的方案,在实现强身份认证的同时,确保客户端与服务器的通信安全,避免通信过程中用户个人隐私的泄露;数据被上传到云端前,由系统自主选择算法进行加密,所有加密工作均在客户端完成,整个过程对于云服务器来说是透明的,从而有效保护了云端数据的安全;二维码技术的运用,丰富了系统的应用场景,同时系统创新性地支持用户上传规则,实现了用户对个人信息的细粒度访问控制。以上功能的实现,都使得我们的系统更加安全、实用。& lt/p& gt
外文摘要:
& ltp& gtIn modern society, information science and technology develop rapidly. All kinds of social software such as WeChat, micro-blog, QQ emerge in endlessly, personal information entry & #40QQ number, WeChat ID, micro-blog, etc.) are also more and more. This makes the exchange of information between people more difficult. Although some electronic card applications on the market integrate personal information success, and to a certain extent, it is convenient for users to exchange information. But, the defects of single application scenario, privacy data easy to leak, access control too coarse grain size and cloud data security without guarantee are prevalent.& lt/p& gt & ltp& gtAiming at these problems, We design a system figuring security--cloud card sharing security system to maximize the protection of user privacy and communication security. The system adopt TOTP + IBE scheme. At the same time of implementing strong authentication, to ensure the safety of the client and server communication, to avoid leakage of communication in the process of user privacy Before the data are uploaded to the cloud, the system choose its own algorithm to encrypt, all encrypted work are completed on the client side. The whole process is transparent for the cloud, so as to effectively protect the safety of the cloud data The use of two-dimensional code technology enriches the application scenarios of the system, meanwhile ,the system innovation to support users to upload rules, implementing fine-grained access control of personal information by the user. The realization of the above functions makes our system more secure and practical.& lt/p& gt
总页码:

 23    

参考文献:
开放日期:

 2016-05-18    

无标题文档

   建议浏览器: 谷歌 火狐 360请用极速模式,双核浏览器请用极速模式