Bài giảng An toàn và bảo mật hệ thống công nghệ thông tin - Chương 8: Cryptography standards
Số trang: 25
Loại file: ppt
Dung lượng: 350.00 KB
Lượt xem: 6
Lượt tải: 0
Xem trước 3 trang đầu tiên của tài liệu này:
Thông tin tài liệu:
Chương 8 trang bị cho người học những kiến thức cơ bản về các chuẩn mật mã. Những nội dung chính được trang bị trong chương này gồm có: Các chuẩn và các giao thức mã hóa, quản trị khóa và chu kỳ thời gian của khóa. Mời các bạn cùng tham khảo.
Nội dung trích xuất từ tài liệu:
Bài giảng An toàn và bảo mật hệ thống công nghệ thông tin - Chương 8: Cryptography standardsChapter8 Cryptography StandardsCryptographyStandardsandProtocols NSA:TheNationalSecurityAgency(NSA)isresponsible forcreatingcodes,breakingcodes,andcodingsystems fortheU.S.government. Thisagencywascharteredin1952.Ittriestokeepalow profile;formanyyears,thegovernmentdidn’tpublicly acknowledgeitsexistence. NSA/CSS:TheNationalSecurityAgency/CentralSecurity Service(NSA/CSS)isanindependentlyfunctioningpartof theNSA. Itwascreatedintheearly1970stohelpstandardizeand supportDepartmentofDefense(DoD)activities. TheNSA/CSSsupportsallbranchesofthemilitary.CryptographyStandardsandProtocols NIST:TheNationalInstituteofStandardsandTechnology, knownastheNationalBureauofStandards(NBS). NISThasbecomeveryinvolvedincryptographystandards, systems,andtechnologyinavarietyofareas. ABA:TheAmericanBankersAssociationhasbeenvery involvedinthesecurityissuesfacingthebankingand financialindustries. Banksneedtocommunicatewitheachotherinasecure manner. TheABAsponsorsandsupportsseveralkeyinitiatives regardingfinancialtransactions.CryptographyStandardsandProtocols IETF:TheInternetEngineeringTaskForce(IETF)isan internationalcommunityofcomputerprofessionals networkengineers,vendors,administrators,and researchers. TheIETFismainlyinterestedinimprovingtheInternet;it’s alsoveryinterestedincomputersecurityissues. TheIETFusesworkinggroupstodevelopandpropose standards. ISOC:TheInternetSociety(ISOC)isaprofessionalgroup whosemembershipconsistsprimarilyofInternetexperts. TheISOCoverseesanumberofcommitteesandgroups, includingtheIETF.CryptographyStandardsandProtocols W3C:TheWorldWideWebConsortium(W3C)isan associationconcernedwiththeinteroperability,growth,and standardizationoftheWorldWideWeb theprimarysponsorofXMLandotherwebenabled technologies. ITU:TheInternationalTelecommunicationsUnionis responsibleforvirtuallyallaspectsoftelecommunications andradiocommunicationsstandardsworldwide. CCITT:TheComitéConsultatifInternationalTéléphoniqueet Télégraphique:committeehasbeeninvolvedindeveloping telecommunicationsanddatacommunicationsstandards. IEEE:TheInstituteofElectricalandElectronicsEngineers:is aninternationalorganizationfocusedontechnologyand relatedstandards.Protocols:SecureSocketsLayer(SSL) DevelopedbyNetscape Usespublickeyencryptiontosecurechanneloverpublic Internet SSLisusedtoestablishasecurecommunication connectionbetweentwoTCPbasedmachines. Providesprivacy Encryptedconnection Confidentialityandtamperdetection Providesauthentication Authenticateserver Authenticateclientoptionally Protocols:SecureSocketsLayer(SSL) Liesabovetransportlayer,belowapplicationlayer Canlieatopanytransportprotocol,notjustTCP/IP RunsunderapplicationprotocolslikeHTTP,FTP,andTELNETSSL:ServerAuthenticationSSL:ClientAuthenticationProtocols:SecureElectronicTransaction(SET) SETprovidesencryptionforcreditcardnumbersthatcan betransmittedovertheInternet. ItwasdevelopedbyVisaandMasterCard Worksinconjunctionwithanelectronicwalletthatmustbe setupinadvanceofthetransaction Anelectronicwalletisadevicethatidentifiesyou electronicallyinthesamewayasthecardsyoucarryin yourwallet.Protocols:SecureElectronicTransaction(SET)Protocols:SHTTP SecureHypertextTransferProtocol(SHTTP):extended versionofHypertextTransferProtocol;providesfor encryptionofindividualmessagesbetweenclientand serveracrossInternet SHTTPistheapplicationofSSLoverHTTP;allows encryptionofinformationpassingbetweencomputers throughprotectedandsecurevirtualconnectionProtocols:SecureShell(SSH) SecureShell(SSH)isatunnelingprotocoloriginallyused onUnixsystems. Thehandshakeprocessbetweentheclientandserveris similartotheprocessdescribedinSSL. SSHisprimarilyintendedforinteractiveterminalsessions. SSHconnectionsareestablishedintwophases: Thefirstphaseisasecurechanneltonegotiatethechannel connection Thesecondphaseisasecurechannelusedtoestablishthe connect ...
Nội dung trích xuất từ tài liệu:
Bài giảng An toàn và bảo mật hệ thống công nghệ thông tin - Chương 8: Cryptography standardsChapter8 Cryptography StandardsCryptographyStandardsandProtocols NSA:TheNationalSecurityAgency(NSA)isresponsible forcreatingcodes,breakingcodes,andcodingsystems fortheU.S.government. Thisagencywascharteredin1952.Ittriestokeepalow profile;formanyyears,thegovernmentdidn’tpublicly acknowledgeitsexistence. NSA/CSS:TheNationalSecurityAgency/CentralSecurity Service(NSA/CSS)isanindependentlyfunctioningpartof theNSA. Itwascreatedintheearly1970stohelpstandardizeand supportDepartmentofDefense(DoD)activities. TheNSA/CSSsupportsallbranchesofthemilitary.CryptographyStandardsandProtocols NIST:TheNationalInstituteofStandardsandTechnology, knownastheNationalBureauofStandards(NBS). NISThasbecomeveryinvolvedincryptographystandards, systems,andtechnologyinavarietyofareas. ABA:TheAmericanBankersAssociationhasbeenvery involvedinthesecurityissuesfacingthebankingand financialindustries. Banksneedtocommunicatewitheachotherinasecure manner. TheABAsponsorsandsupportsseveralkeyinitiatives regardingfinancialtransactions.CryptographyStandardsandProtocols IETF:TheInternetEngineeringTaskForce(IETF)isan internationalcommunityofcomputerprofessionals networkengineers,vendors,administrators,and researchers. TheIETFismainlyinterestedinimprovingtheInternet;it’s alsoveryinterestedincomputersecurityissues. TheIETFusesworkinggroupstodevelopandpropose standards. ISOC:TheInternetSociety(ISOC)isaprofessionalgroup whosemembershipconsistsprimarilyofInternetexperts. TheISOCoverseesanumberofcommitteesandgroups, includingtheIETF.CryptographyStandardsandProtocols W3C:TheWorldWideWebConsortium(W3C)isan associationconcernedwiththeinteroperability,growth,and standardizationoftheWorldWideWeb theprimarysponsorofXMLandotherwebenabled technologies. ITU:TheInternationalTelecommunicationsUnionis responsibleforvirtuallyallaspectsoftelecommunications andradiocommunicationsstandardsworldwide. CCITT:TheComitéConsultatifInternationalTéléphoniqueet Télégraphique:committeehasbeeninvolvedindeveloping telecommunicationsanddatacommunicationsstandards. IEEE:TheInstituteofElectricalandElectronicsEngineers:is aninternationalorganizationfocusedontechnologyand relatedstandards.Protocols:SecureSocketsLayer(SSL) DevelopedbyNetscape Usespublickeyencryptiontosecurechanneloverpublic Internet SSLisusedtoestablishasecurecommunication connectionbetweentwoTCPbasedmachines. Providesprivacy Encryptedconnection Confidentialityandtamperdetection Providesauthentication Authenticateserver Authenticateclientoptionally Protocols:SecureSocketsLayer(SSL) Liesabovetransportlayer,belowapplicationlayer Canlieatopanytransportprotocol,notjustTCP/IP RunsunderapplicationprotocolslikeHTTP,FTP,andTELNETSSL:ServerAuthenticationSSL:ClientAuthenticationProtocols:SecureElectronicTransaction(SET) SETprovidesencryptionforcreditcardnumbersthatcan betransmittedovertheInternet. ItwasdevelopedbyVisaandMasterCard Worksinconjunctionwithanelectronicwalletthatmustbe setupinadvanceofthetransaction Anelectronicwalletisadevicethatidentifiesyou electronicallyinthesamewayasthecardsyoucarryin yourwallet.Protocols:SecureElectronicTransaction(SET)Protocols:SHTTP SecureHypertextTransferProtocol(SHTTP):extended versionofHypertextTransferProtocol;providesfor encryptionofindividualmessagesbetweenclientand serveracrossInternet SHTTPistheapplicationofSSLoverHTTP;allows encryptionofinformationpassingbetweencomputers throughprotectedandsecurevirtualconnectionProtocols:SecureShell(SSH) SecureShell(SSH)isatunnelingprotocoloriginallyused onUnixsystems. Thehandshakeprocessbetweentheclientandserveris similartotheprocessdescribedinSSL. SSHisprimarilyintendedforinteractiveterminalsessions. SSHconnectionsareestablishedintwophases: Thefirstphaseisasecurechanneltonegotiatethechannel connection Thesecondphaseisasecurechannelusedtoestablishthe connect ...
Tìm kiếm theo từ khóa liên quan:
An toàn thông tin Bảo mật thông tin Chuẩn mật mã Cryptography standards Secure sockets layer Client authentication Giao thức mã hóaGợi ý tài liệu liên quan:
-
Đề cương chi tiết bài giảng môn Đảm bảo và an toàn thông tin
25 trang 272 0 0 -
10 trang 221 1 0
-
5 trang 178 0 0
-
Giáo trình An toàn, an ninh thông tin và mạng lưới
142 trang 170 0 0 -
Kiến thức căn bản về Máy tính - Phùng Văn Đông
52 trang 165 0 0 -
Xây dựng thuật toán, thử nghiệm đánh giá mô hình cứng hóa giao thức IKEv2.0
7 trang 158 0 0 -
Giáo trình An toàn và bảo mật thông tin - Đại học Bách Khoa Hà Nội
110 trang 113 0 0 -
Về một giải pháp cứng hóa phép tính lũy thừa modulo
7 trang 105 0 0 -
Một số thuật toán giấu tin trong ảnh có bảng màu và áp dụng giấu tin mật trong ảnh GIF
5 trang 94 0 0 -
Blockchain – Một số ứng dụng trong trường đại học
12 trang 89 0 0