Ëæ×ÅInternetµÄ·¢Õ¹£¬ÈËÓëÈËÖ®¼äµÄ¾àÀë±»ÎÞÏÞÀ½ü£¬ÈκÎÐÅÏ¢µÄ¶ªÊ§¶¼ÃæÁÙ×Å¿ÉÄܱ»·Ç·¨Ê¹Óã¬ÉõÖÁ¿ìËÙ´«²¥µÄΣÏÕ¡£´Å´ø×÷Ϊ¼ÆËã»ú±¸·ÝµÄÖ÷ÒªÔØÌå¿ÉÄÜЯ´øÏû·ÑÕßµÄÖÚ¶à¸öÈËÐÅÏ¢£¬Òò¶ø±£Ö¤Æä´«µÝ¹ý³ÌÖеݲȫÐÔ¾ÍÏÔµÃÓÈÎªÖØÒª¡£
ÄÇô£¬´Å´øÔÚÔËÊä;Öо¿¾¹»á·¢ÉúЩʲô?
2005Äê3Ô£¬ÃÀÖÞÒøÐгÐÈ϶ªÊ§±¸·Ý´Å´øÖÐ1200Íò¿Í»§µÄÐÅÓÿ¨×ÊÁÏ£¬ÆäÖаüÀ¨120ÍòÃûÁª°î¹ÍÔ±£¨º¬60ÃûÃÀ¹ú²ÎÒéÔ±£©µÄÐÅÓÿ¨ÕË»§¼Ç¼¡£
2005Äê5Ô£¬ÃÀ¹úʱ´ú»ªÄɹ«Ë¾Ðû²¼£¬±£´æ¹«Ë¾60ÍòÃûÔÚÖ°ºÍÀëÖ°Ô±¹¤¸öÈËÐÅÏ¢µÄ40ÅÌ´Å´øÔÚÔËÊä;ÖжªÊ§¡£
2005Äê6Ô£¬È«Çò×î´óµÄÒøÐÐ - »¨Æì¼¯ÍÅ£¨Citigroup£©ÏÂÊôµÄ»¨Æì½ðÈÚ·þÎñ¹«Ë¾£¨CitiFinancial£©Ðû²¼ÔÚÔËÊä;ÖÐÒÅʧÁËÒ»Åú°üº¬390ÍòÃû¿Í»§µÄÐÕÃû¡¢ÕË»§ÐÅÏ¢¡¢Ö§¸¶¼Ç¼ÒÔ¼°Éç±£¿¨ºÅµÈÃô¸ÐÐÅÏ¢µÄµçÄÔ±¸·Ý´Å´ø¡£
¶øÕâÖ»ÊÇÖÚ¶à´Å´ø¶ªÊ§°¸ÀýÖеÄһС²¿·Ö£¬Ò»Î»Òþ˽ºÍ֪ʶ²úȨר¼ÒÖ¸³ö£¬Ëæ×ÅÊý¾Ý¶ªÊ§Ê¼þµÄÔö¶à£¬ÆóÒµÃæÁÙןıäÔÓÐÊý¾Ý°²È«±ê×¼µÄѹÁ¦£¬ÆóÒµµÄÊ×ϯ°²È«¹ÙÐèÒªÖØÐÂÉóÊÓ×Ô¼ºµÄ°²È«²ßÂÔ²¢²ÉÈ¡¼°Ê±µÄÓ¦¶Ô´ëÊ©¡£ÀýÈ磬»ªÄɹ«Ë¾¾ÍÐû²¼£¬¼øÓÚ±£´æ¹«Ë¾60ÍòÃûÔÚÖ°ºÍÀëÖ°Ô±¹¤¸öÈËÐÅÏ¢µÄ40ÅÌ´Å´øÔÚÔËÊä;ÖжªÊ§£¬¹«Ë¾¾ö¶¨½«¾¡¿ìΪËùÓд洢±¸·Ý´Å´ø¼ÓÃÜ¡£
´Å´ø¼ÓÃÜ¿ÉÒÔÒþ²ØºÍ±£»¤Ãô¸ÐÊý¾Ý¡£Ò»·½Ã棬Èç¹û´Å´øÀ뿪ÁËÊý¾ÝÖÐÐÄ£¬Ò²¾ÍÀ뿪ÁËRACF£¨×ÊÔ´·ÃÎÊ¿ØÖƹ¤¾ß£©»òÆäËüÀàËÆ·ÃÎÊ¿ØÖÆ»úÖÆµÄ±£»¤¡£ÁíÒ»·½Ã棬Õþ¸®»ú¹¹Ò²¶¼±»¸³ÓèÔðÈÎÀ´½Ò·¢Ð¹ÃÜʼþ¡£Îª´Ë£¬¹¤Òµ×éÖ¯ÔÚ°²È«Á÷³ÌµÄÉ󼯷½Ã濪ʼ³Ðµ£×ÅÔ½À´Ô½¶àµÄѹÁ¦¡£Èç½ñ£¬´Å´ø¼ÓÃܵÄÍÆ³öΪ±ÜÃâÊý¾ÝµÄ·Ç·¨²éÔĺÍÂÄÐа²È«¹æ·¶ÌṩÁ˼òµ¥¾¼ÃµÄ½â¾ö·½°¸¡£
Ãô¸Ð¡¢ÖØÒªµÄÊý¾Ý¿ÉÒÔÒԺܶ෽·¨½øÐб£»¤£¬Èí¼þÊý¾Ý¼ÓÃÜ¡¢¼ÓÃÜ¿¨¡¢¼ÓÃÜÆ÷µÈ²úÆ·ÁîÈËÓ¦½Ó²»Ï¾¡£µ«ÊÇ£¬Èí¼þ¼ÓÃÜ»áÕ¼ÓÃCPU×ÊÔ´¡¢Ó²¼þ¼ÓÃÜÐèÒªÌíÖÃÉ豸¡£ÓÐûÓиüºÃµÄ·½·¨£¿´ð°¸Êǿ϶¨µÄ£¬IBM¹«Ë¾¾ÍÌá³öÁË´Å´ø¼ÓÃܽâ¾ö·½°¸¡£
´Å´ø¼ÓÃÜÊÇÓÉ´Å´øÇý¶¯Æ÷¶ÔѹËõºóµÄÊý¾ÝÖ±½Ó½øÐмÓÃÜ£¬Ã»ÓжîÍâµÄ¼ÓÃÜÈí¼þ¿ªÏú£¬ÎÞÐëÔö¼ÓÓ²¼þͶ×Ê£¬»¹¿ÉÒÔ½ÚÊ¡´Å´ø¿Õ¼ä¡£´ËÍ⣬ÕâÖÖ¼ÓÃÜ£¬¿ÉÒÔÈÃÄãÒÔ¸ü¼Ó¾¼ÃµÄ·½Ê½±£´æ´óÁ¿µÄ´Å´øÊý¾Ý¡£¼ÓÃܺóµÄÊý¾Ý´øÔÚ´Å´ø¹ýÆÚºó£¬ÎÞÐèÏú´Å»òÕßдx¡®FF¡¯´¦Àí¡£ÕâЩÓŵ㲻½öÊÊÓÃÓÚÆÕͨ´Å´ø£¬¶ÔÓÚWORM£¨Ð´Ò»´Î¶Á¶à´Î£©´Å´ø£¬Ò²Í¬ÑùÊÊÓá£
»ùÓÚ´Å´øÇý¶¯Æ÷µÄ¼ÓÃÜÐèҪʹÓù«Ô¿ºÍ˽Կ£¬µ«ÕâÖ»Êǽâ¾ö·½°¸ÖеÄÒ»²¿·Ö¡£Ò»¸öÍêÕûµÄ½â¾ö·½°¸»¹°üÀ¨¼ÓÃܲßÂÔºÍÃÜÔ¿¹ÜÀí¡£IBM¹«Ë¾ÈÏʶµ½²ßÂÔºÍÃÜÔ¿¹ÜÀí¿ÉÄÜËæ»·¾³µÄ±ä»¯¶ø²»Í¬£¬Îª´Ë£¬IBM¿ª·¢ÁËÒ»Ì×Áé»îµÄ½â¾ö·½°¸£¬ÔÊÐí¿Í»§¸ù¾Ý×Ô¼º¶ÀÓеĻ·¾³½øÐÐÊʵ±µÄ²Ã¼õ¡£
±¾ÎĽ«´Ó¸ÅÄî³ö·¢£¬Îª¶ÁÕß½éÉÜIBM¹«Ë¾µÄ´Å´ø¼ÓÃܼ¼Êõ£¬²¢ÆÚÍû¶ÁÕß¼®´ËÁ˽Ⲣ×ß½ü´Å´ø¼ÓÃܼ¼Êõ¡£
¼ÓÃÜ
ÎÒÃÇÊ×ÏÈÀ´½éÉÜһЩºÍ¼ÓÃÜÓйصĸÅÄî¡£
¼ÓÃÜÊǽ«²»Êܱ£»¤µÄÃ÷ÎÄÊý¾Ý´¦Àí³ÉÃÜÎĵĹý³Ì¡£Èç¹ûûÓÐÃÜÔ¿ºÜÄѽ«ÃÜÎĻָ´³ÉÃ÷ÎÄ¡£¼ÆËã»ú¼¼ÊõµÄ³öÏÖʹµÃºÜ¶à¸´ÔÓ¼ÓÃÜ»úÖÆµÄʵÏÖ³ÉΪ¿ÉÄÜ¡£IBM¹«Ë¾ºÍÃÀ¹ú±ê×¼Óë¼¼ÊõÑо¿Ôº£¨US Government National Institute of Standards and Technology£©ºÏ×÷£¬ÓÚ1974Ä꿪·¢ÁË»ùÓÚ¼ÆËã»úµÄ¼ÓÃÜËã·¨ - DES¡£Ëæ×żÆËã»ú¼¼ÊõµÄ·¢Õ¹£¬DESËã·¨ÒѾ½¥ÏÔÂäºó£¬¼ÓÃܽçÒ²ÍÆ³Â³öУ¬TDES£¨Triple DES£©¡¢AES(Advanced Encryption Standard)µÈºÜ¶àÐÂËã·¨¶¼µÃµ½Á˹㷺µÄÓ¦Óá£IBM¹«Ë¾µÄ´Å´ø¼ÓÃܽâ¾ö·½°¸Í¬Ê±²ÉÓÃÁ˶ԳƼÓÃÜËã·¨ºÍ²»¶Ô³Æ¼ÓÃÜËã·¨£¬¼È³ä·ÖÀûÓÃÁ˸÷×ÔµÄÓÅÊÆ£¬ÓÖ¶Ô¶þÕß½øÐÐÁËÓлúµÄ½áºÏ¡£
¶Ô³ÆÃÜÔ¿¼ÓÃÜ
ʹÓöԳÆÃÜÔ¿ºÍËã·¨¼ÓÃÜÊý¾Ý£¬ÓÐʱҲ½Ð×ö˽Կ¼ÓÃÜ»òÕßÃÜÔ¿¼ÓÃÜ£¬µ«ÊÇËü²¢²»µÈͬÓÚ²»¶Ô³ÆÃÜԿϵͳÖеÄ˽Կ¡£ÔÚ¶Ô³ÆÃÜԿϵͳÖÐÓÃÀ´¼ÓÃÜÊý¾ÝµÄÃÜÔ¿ÓëÓÃÀ´½âÃܵÄÃÜÔ¿ÃÜÇÐÏà¹Ø¡£¼ÓÃܺͽâÃܵÄÃÜÂë¿ÉÒÔͨ¹ý¶ÔÃÜÔ¿µÄ¼òµ¥×ª»»À´»ñµÃ£¬¶þÕßÉõÖÁ¿ÉÒÔÏàͬ¡£ÔÚIBM¹«Ë¾µÄ´Å´ø¼ÓÃܽâ¾ö·½°¸ÖУ¬¼ÓÃܺͽâÃܵÄÃÜÔ¿¾ÍÊÇÏàͬµÄ¡£Í¬Ê±£¬Ê¹Óò»¶Ô³ÆÃÜԿϵͳ¶ÔÆä½øÐб£»¤£¬Ê¹Ö®´Ó²»ÒÔÃ÷ÎÄʾÈË¡£
¶Ô³Æ¼ÓÃÜËã·¨±È²»¶Ô³Æ¼ÓÃÜËã·¨µÄËÙ¶ÈÒª¿ìºÜ¶à£¬ÇÒ²î±ðÊÇÂÛÊýÁ¿¼¶µÄ£»Í¬Ê±£¬¶þÕßÃÜÔ¿µÄ´óСҲÓкܴó²î±ð¡£ÀýÈ磬ÔڶԳƼÓÃÜϵͳÖУ¬Ò»¸ö128λµÄÃÜÔ¿¾Í±»ÈÏΪÊÇÏ൱°²È«µÄÁË£¬¶øÔÚ²»¶Ô³Æ¼ÓÃÜϵͳÖУ¬ÀýÈçRSA£¨Rivest-Shamir-Adleman£©½¨ÒéʹÓõÄÃÜÔ¿³¤¶ÈΪ1024λ¡£
IBM¹«Ë¾µÄ´Å´ø¼ÓÃܽâ¾ö·½°¸²ÉÓõÄÊÇAESËã·¨¡£AESÊÇ»ùÓÚRijndaelËã·¨µÄ³£¼û±ê×¼£¬ÆäËùÖ§³ÖµÄÃÜÔ¿³¤¶ÈºÍ¿é´óС¶¼ÊÇRijndaelËã·¨µÄ×Ó¼¯¡£ÀýÈ磬AES±ê×¼Ö§³Ö³¤¶ÈΪ128¡¢192¡¢256λµÄÃÜÔ¿£¬ÆäÖÐ256λµÄÃÜÔ¿¾Í±»Ó¦ÓÃÔÚIBMµÄ´Å´ø¼ÓÃܼ¼ÊõÖС£
ÃÜÔ¿Ëã·¨¿ÉÒÔÒ»´Îһ룬»òÕßÒ»´ÎÒ»¿éµØ¶ÔÊý¾Ý½øÐмÓÃÜ¡£AES±ê×¼Ö§³ÖµÄ¿é´óСΪ128λ¡£
ÆäËüʹÓöԳÆÃÜÔ¿µÄËã·¨»¹ÓÐTwofish, Blowfish, Serpent, Cast5, Des, TDES, ºÍIDEA¡£
×¢ÊÍ£ºRijdindaelËã·¨Ö§³ÖµÄ¿é´óСΪ128¡¢160¡¢192¡¢224ºÍ256λ£»Ö§³ÖµÄÃÜÔ¿³¤¶ÈΪ128¡¢160¡¢192¡¢224ºÍ256λ¡£
·Ç¶Ô³ÆÃÜÔ¿¼ÓÃÜ
ÁíÒ»¸ö±»¹ã·º²ÉÓõÄÖØÒª¼ÓÃÜ·½·¨Êǹ«/˽Կ¼ÓÃÜ£¬Ò²½Ð×ö²»¶Ô³Æ¼ÓÃÜ¡£²ÉÓÃÕâÖÖ¼ÓÃÜ·½·¨£¬ÐèÒª³É¶ÔÉú³ÉÃÜÔ¿£¬ÆäÖеÚÒ»¸öÃÜÔ¿ÓÃÀ´¼ÓÃÜÊý¾Ý£¬µÚ¶þ¸öÃÜÔ¿ÔòÓÃÀ´½âÃÜÊý¾Ý¡£ÕâÖÖ¼¼Êõ×îÔç³öÏÖÔÚ1970Ä꣬ΪÃÜÂëÊõ´øÀ´ÁËÖØ´óÍ»ÆÆ¡£Ê¹Ó÷ǶԳƼ¼ÊõµÄRSAËã·¨ÔÚ¹«Ô¿ÁìÓòÓ°Ïì×î¹ã¡£ÕâÖÖËã·¨µÄÌØµãÊÇÓÐÒ»¸ö¿ÉÒÔ±»¹ã·º¹²ÏíµÄ¹«Ô¿¡£ÀýÈ磬Ҫ¸øÄ³¸ö×éÖ¯·¢Ëͱ£ÃÜÊý¾Ý£¬¾Í¿ÉÒÔʹÓÃÕâ¸ö×éÖ¯µÄ¹«Ô¿¶ÔÊý¾Ý×ö¼ÓÃÜ´¦Àí£¬¸Ã×éÖ¯ÊÕµ½Êý¾ÝºóÔÙÓÃ×Ô¼ºµÄ˽Կ½â¿ªÊý¾Ý¡£Òò´Ë£¬¹«/˽Կ·½·¨·Ç³£ÊʺÏÓÚ×éÖ¯¼äµÄÐÅÏ¢¹²Ïí¡£Èç½ñ£¬ÕâÖÖ·½·¨ÒѾ±»¹ã·ºÓÃÓÚInternet£¬ÀýÈçSSL¾ÍÊÇʹÓÃËüÀ´ÊµÏÖÊý¾ÝµÄ°²È«´«µÝ¡£
Óë¶Ô³Æ¼ÓÃÜËã·¨Ïà±È£¬·Ç¶Ô³Æ¼ÓÃÜËã·¨µÄÔËËãÁ¿¸ü´ó£¬Òò¶øËÙ¶ÈÒ²¸üÂý¡£µ«ÊǷǶԳƼÓÃܵÄËã·¨Ò²ÓÐ×Ô¼ºµÄÓŵ㣬ÄǾÍÊÇ¿ÉÒÔÔÚ²»¹²ÏíÃÜÔ¿µÄÇé¿öϹ²ÏíÐè±£ÃܵÄÊý¾Ý¡£
·¶Àý£º
ͼÖÐTonyÓµÓÐ×Ô¼ºµÄ˽Կ£¬JoHannÓÐTonyµÄ¹«Ô¿¿½±´¡£TonyÓÃ×Ô¼ºµÄ˽Կ¼ÓÃÜÁËÒ»ÌõÐÅÏ¢£¬²¢°ÑÐÅÏ¢µÄÃÜÎÄ·¢Ë͸øÁËJoHann¡£JoHann½Óµ½ÐÅÏ¢ºóʹÓÃTonyµÄ¹«Ô¿½âÃÜ¡£µ±ÐÅÏ¢±äΪÃ÷ÎÄ£¬±íÃ÷JoHannÔÚºÍTonyͨѶ£¬ÒòΪֻÓÐTonyÓµÓÐ×Ô¼ºµÄÃÜÔ¿£¨ÕâÊÇÒ»¸öÉí·ÝÈ·ÈϹý³Ì£©¡£ÓÚÊÇJoHannÓÃTonyµÄ¹«Ô¿¼ÓÃÜËûÏë±£»¤µÄÊý¾Ý²¢·¢Ë͸øTony£¬¶øTonyÊÕµ½Êý¾ÝºóÔòÓÃ×Ô¼ºµÄ˽Կ½âÃÜÊý¾Ý£¨ÕâÊÇÊý¾Ý´«µÝ¹ý³Ì£©¡£
ÎÞÂÛÊǶԳÆÃÜÔ¿¼ÓÃÜ·½°¸»¹ÊǷǶԳÆÃÜÔ¿¼ÓÃÜ·½°¸£¬ÔÚÊý¾Ý±£»¤ÁìÓò¶¼Õ¼¾Ý×ŷdz£ÖØÒªµÄµØÎ»£¬¶ø²ÉÓ÷ǶԳƼÓÃÜ»úÖÆµÄ±È½ÏÖøÃûµÄËã·¨ÓÐDiffie-Hellman¡¢Elliptic curve cryptography£¨ECC£©¡¢ElGamal¡¢RSA¡£
Êý×ÖÖ¤Êé
ÈçǰËùÊö£¬·Ç¶Ô³ÆÃÜÔ¿ÓÐÉí·ÝÈ·ÈϵŦÄÜ£¬ÓÉ´ËÈËÃÇ¿ªÊ¼ÓÐÁËÓÃÃÜÔ¿±íʾÉí·ÝµÄÏë·¨£¬ÓÚÊÇÊý×ÖÖ¤Êéµ®ÉúÁË¡£ËùνÊý×ÖÖ¤ÊéÊÇÒ»ÖÖ½«¹«Ô¿ÐÅÏ¢ºÍÉí·Ý°ó¶¨µÄ·½·¨¡£Êý×ÖÖ¤Êéͨ³£°üÀ¨ÒÔÏÂÄÚÈÝ£º
´Å´ø¼ÓÃÜ
¼ÓÃܼ¼ÊõÓ¦ÓÃÓÚ´Å´ø¾ÍÊÇ´Å´ø¼ÓÃÜ¡£±¾½ÚÎÒÃǽ«×·´ÓÊý¾ÝµÄ·¾¶£¨´Óϵͳµ½´Å´ø£¬´Ó¼ÓÃܵ½½âÃÜ£©Îª¶ÁÕß½éÉÜ´Å´øÇý¶¯Æ÷ÓëEKM£¨ÃÜÔ¿¹ÜÀíÆ÷£©Ö®¼äÈçºÎͨѶ£¬ÈçºÎ´«µÝÃÜÔ¿£¬ÒÔ¼°´Å´ø¼ÓÃܵÄÈýÖÖ·½·¨£º
Ó¦ÓùÜÀí´Å´ø¼ÓÃܽéÉÜ
IBMµÄ´Å´ø¼ÓÃܽâ¾ö·½°¸Ö§³ÖÈýÖÖÀàÐ͵ĴŴø¼ÓÃÜ¡£ÎÒÃÇÊ×ÏÈÀ´¿´Ó¦ÓùÜÀí´Å´ø¼ÓÃÜ¡£
ͼÖÐÓÐһ̨TS3500´Å´ø¿â£¬Ê¹ÓþßÓмÓÃܹ¦ÄܵÄTS1120Çý¶¯Æ÷£¬Æô¶¯Á˼ÓÃܹ¦ÄÜ¡£TS3500ͨ¹ý¹âÏËͨµÀÁ¬½Ó·þÎñÆ÷£¬·þÎñÆ÷Éϰ²×°²¢ÔËÐÐTSMÈí¼þ¡£±¾Àý£¬½«Ê¹ÓÃÕâÌ×TSMÈí¼þʵÏÖ´Å´ø¼ÓÃܹÜÀíºÍÃÜÔ¿¹ÜÀí¡£
´Å´ø¿âͨ¹ý¹âÏËͨµÀÁ¬½Ó·þÎñÆ÷ÉϵÄÉ豸Çý¶¯£¬¶øÉ豸Çý¶¯³ÌÐòÓÖÓëTSMͨѶ¡£TSM¹ÜÀí×Å´Å´øÇý¶¯Æ÷ʹÓõÄ256λµÄAES DK¡£Êý¾ÝдÈë´Å´ø£¬DKÔòͨ¹ý¹âÏËͨµÀ·¢Ë͸ø´Å´øÇý¶¯Æ÷¡£
TSMÈí¼þ¼È¿ØÖƱ¸·ÝʲôÊý¾Ý£¬ÓÖ¹ÜÀíʹÓÃʲôÃÜÔ¿À´Íê³ÉÊý¾ÝµÄ¼Ó/½âÃÜ¡£
×¢ÊÍ£ºÈç¹ûʹÓÃÓ¦ÓùÜÀí´Å´ø¼ÓÃÜ·½Ê½¼ÓÃÜ£¬¾Í±ØÐëʹÓÃÓ¦ÓùÜÀí·½Ê½½âÃÜ¡£Í¬Ê±£¬ÒòΪDK±»±£´æÔÚTSMµÄÊý¾Ý¿âÖУ¬Òò´Ë£¬±ØÐëʹÓÃÏàͬµÄÊý¾Ý¿â¡£
¿â¹ÜÀí´Å´ø¼ÓÃܽéÉÜ
ÈçÉÏͼËùʾ£¬ÎÒÃÇʹÓÃTS3500´Å´ø¿â£¬Æô¶¯¼ÓÃܹ¦ÄܵÄTS1120´Å´ø»ú¡£´Å´ø¿â×Ô¼º¹ÜÀí¼ÓÃܲßÂÔ¡£Í¼ÖеĴŴø¿âͨ¹ý¹âÏËͨµÀºÍ¿ª·Åϵͳ·þÎñÆ÷ÏàÁ¬£¬·þÎñÆ÷ÉÏÔËÐÐEKM£¬²¢ÓÉEKM¸ºÔðÉú³ÉAES DKºÍ´æ´¢·ûºÏRSAËã·¨µÄÃÜÔ¿¶Ô£¬ÕâЩÃÜÔ¿¶Ô½«ÓÃÀ´Éú³ÉEEDK¡£
Ó¦ÓóÌÐò·¢ËÍдÇëÇó¸ø´Å´ø»ú¡£µ±´Å´ø×°Èë´ø¿â£¬´Å´ø¿âÊ×ÏÈҪȷÈÏ´Å´øÊǼÓÃܵϹÊÇû¼ÓÃܵġ£Èç¹ûÊǼÓÃܵĴŴø£¬TS1120»áͨ¹ý¿âÌåºÍ·þÎñÆ÷µÄTCP/IPÁ¬½ÓÏòEKMÉêÇëÓÃÀ´¼ÓÃÜÊý¾ÝµÄÃÜÔ¿¡£Êý¾Ýͨ¹ý¹âÏËͨµÀ±»´«µÝµ½´Å´øÇý¶¯Æ÷£¬±»Çý¶¯Æ÷¼ÓÃÜ£¨Ê¹ÓôÓEKM»ñµÃµÄDK£©ºóдÈë´Å´ø¡£
×¢ÊÍ£ºÔÚ¿â¹ÜÀí´Å´ø¼ÓÃܽâ¾ö·½°¸ÖУ¬TS1120Çý¶¯Æ÷ͨ¹ý¿âÌåºÍEKMͨѶ£»TS3500´Å´ø¿âÓвßÂÔÅжϴŴøÊÇ·ñΪ¼ÓÃܵġ£
ϵͳ¹ÜÀí´Å´ø¼ÓÃܽéÉÜ
ϵͳ¹ÜÀí´Å´ø¼ÓÃÜ·½Ê½£¬z/OSÉϵÄDFSMS£¨ÔËÐÐÔÚz/OSÉϵÄData Facility Storage Management Subsystem£©ºÍAIXÉϵÄAtape¶¼Ö§³Ö¸ÃÖÖ·½Ê½¡£ÔÚ¿ª·ÅϵͳÖУ¬ÕâÖÖÖ§³Ö²ÉÓõÄÊÇ´øÄÚ·½Ê½£¬¼´Çý¶¯Æ÷ºÍEKMÖ®¼äµÄͨѶÊÇͨ¹ý¹âÏËͨµÀ´«µÝµÄ¡£
Z/OSÉÏÔòÁ½ÖÖ·½Ê½¶¼Ö§³Ö¡£´øÄÚ·½Ê½£ºÇý¶¯Æ÷ºÍ·þÎñÆ÷´úÀíͨ¹ýESCON/FICONͨµÀ½øÐÐÁ¬½Ó£¬¶ø·þÎñÆ÷´úÀíºÍEKMÔò²ÉÓÃTCP/IPÁ¬½Ó¡£´øÍⷽʽ£º´Å´ø¿ØÖÆÆ÷ºÍEKM·þÎñÆ÷ͨ¹ýTCP/IPÁ¬½Ó¡£²ÉÓôøÍâ¹ÜÀíÐèҪʹÓ÷ÓÉÆ÷¡£VM£¬VSE£¬TPF£¬zLinuxÖ»Ö§³Ö´øÍⷽʽ¡£
Ó¦Ó÷¢ËͶÁдÇëÇó¸øAtape¡£´Å´øÇý¶¯Æ÷£¬¸ù¾Ý²ßÂÔ£¬Í¨¹ýAtapeÏòEKMÉêÇëÃÜÔ¿£¬EKMÔòͨ¹ý¹âÏËͨµÀ½«ÃÜÔ¿´«µÝ¸øÇý¶¯Æ÷¡£Çý¶¯Æ÷»òÕßÒ»±ß½ÓÊÕÊý¾Ý¡¢¼ÓÃÜÊý¾Ý²¢±¸·Ýµ½´Å´øÉÏ£¬»òÕß´Ó´Å´ø¶ÁÊý¾Ý¡¢½âÃÜÊý¾Ý²¢½«Êý¾ÝÃ÷ÎÄͨ¹ý¹âÏËͨµÀ´«µÝ³öÈ¥¡£
ÔÚÕâ¸ö»·¾³ÖУ¬´Å´øÇý¶¯Æ÷ºÍEKM¼äµÄͨѶÊÇͨ¹ýAtapeÇý¶¯³ÌÐò½øÐеġ£AtapeÇý¶¯Öаüº¬ÅжϾíÊÇ·ñΪ¼ÓÃܵIJßÂÔ¡£
EKMËæ×ÅJCECCARACFKS±»µ÷Èë¡£DFSMS´¦Àí¼ÓÃܲßÂÔ£¬Z/OSµÄIOS£¨I/O Ssupervisor£©×é¼þ¸ú×ÙÎÒÃǵÄEKMµØÖ·£¨×î¶àÁ½¸öµØÖ·£©¡£µ±Ó¦ÓÃÇëÇó·¢ËÍÊý¾Ý¸ø´Å´ø»òÕß´Ó´Å´ø¶ÁÊý¾Ýʱ£¬¿ÉÒÔͨ¹ýDFSMSÖеÄÊý¾ÝÀà½á¹¹¶¨Òå¼ÓÃܲßÂÔ¡£
EKMÏòRACF·¢³ö¶ÁÈ¡ÃÜÔ¿²ÄÁϵÄÉêÇ룬¶øRACFÔòʹÓÃICSF´ÓÓ²¼þ¼ÓÃܵÄPKDS»ñµÃÃÜÔ¿²ÄÁÏ£¬²¢·µ»Ø¸øEKM¡£µ±EKMÍê³ÉÁËÕâЩÃÜÔ¿²Ù×÷£¬Ëü»áͨ¹ýTCP/IP½«ÃÜÔ¿·¢Ë͸øIOS¡£IOSÔòͨ¹ýFICON/ESCONͨµÀ£¬°ÑÃÜÔ¿·¢Ë͸ø¿ØÖƵ¥Ôª£¬¿ØÖƵ¥ÔªÔÙ°ÑÐÅÏ¢·¢Ë͸øÆô¶¯¼ÓÃܹ¦ÄܵÄTS1120´Å´ø»ú¡£Ò»µ©Çý¶¯Æ÷»ñµÃÁËDK£¬¾Í¿ÉÒÔͨ¹ý¹âÏËͨµÀ·¢ËÍÊý¾Ý¸øÇý¶¯Æ÷¡£Çý¶¯Æ÷¼ÓÃÜÊý¾Ý²¢Ð´´Å´ø¡£
ÔÚZ/OSƽ̨ʹÓôøÍⷽʽ£¬²»ÐèÒª½èÖúIOS´úÀíÀ´ºÍEKMͨѶ¡£±¾ÀýÖÐÎÒÃÇʹÓÃJCECCAKS¡£
DFSMS´¦Àí¼ÓÃܲßÂÔ£¬¿ØÖƵ¥ÔªÔò±£ÁôÎÒÃÇEKMµÄµØÖ·£¨×î¶àÁ½¸öµØÖ·£©¡£µ±Ó¦ÓÃÇëÇó·¢ËÍÊý¾Ý¸øÇý¶¯Æ÷»òÕß´Ó´Å´ø¶ÁÈ¡Êý¾Ý£¬»áͨ¹ýDFSMSµÄÊý¾ÝÀà½á¹¹¼ì²é¼ÓÃܲßÂÔ¡£
È»ºóEKMʹÓÃICSF´Ó¼ÓÃÜÓ²¼þ¶ÁÈ¡ÃÜÔ¿²ÄÁÏ¡£µ±EKMÍê³ÉÕâЩÃÜÔ¿²Ù×÷£¬Ëü»áͨ¹ýTCP/IPÁ¬½Ó°ÑÉêÇëÀ´µÄÃÜÔ¿·¢¸ø¿ØÖƵ¥Ôª¡£¿ØÖƵ¥ÔªÔÙ°ÑÃÜÔ¿·¢Ë͸øÆô¶¯¼ÓÃܹ¦ÄܵÄTS1120´Å´ø»ú¡£Ò»µ©´Å´øÇý¶¯Æ÷»ñµÃÃÜÔ¿£¬¾Í¿ÉÒÔͨ¹ý¹âÏËͨµÀ·¢ËÍÊý¾Ý¸øÇý¶¯Æ÷¡£½ÓÏÂÀ´ÊÇÇý¶¯Æ÷¼ÓÃÜÊý¾Ý²¢Ð´´Å´ø¡£Àý×ÓÖеĿØÖƵ¥ÔªÐèҪʹÓ÷ÓÉÆ÷£¬²¢¶¨ÒåÓÐЧµÄÍøÂç·¾¶¡£
ϵͳ¹ÜÀíºÍ¿â¹ÜÀí·½Ê½µÄ¼ÓÃܹý³Ì
ÏÂͼÃèÊöÁ˼ÓÃܲ¢±¸·ÝÊý¾Ýµ½´Å´øµÄÁ÷³Ì£¬ÒÔ¼°ÃÜÔ¿ÈçºÎ±»´«µÝµ½´Å´øÇý¶¯Æ÷£¬È»ºóдÈë½éÖÊ¡£±¾ÀýÖУ¬ÎÒÃǼÙÉèEKMÔËÐÐÔÚһ̨·þÎñÆ÷ÉÏ£¬¶ø´Å´ø¿â¡¢´Å´øÇý¶¯Æ÷ÔòÁ¬½Óµ½ÁËÁíһ̨·þÎñÆ÷ÉÏ¡£·þÎñÆ÷µÄÀàÐͲ¢²»ÖØÒª£¬¿ÉÒÔÏàͬҲ¿ÉÒÔ²»Í¬£¬ÒòΪÀàÐÍÏàͬÓë·ñ²¢²»Ó°Ïì½á¹û¡£
ÎÒÃǼÙÉèÀ´×ÔBPµÄÖ¤ÊéÒѾ±»µ¼ÈëÃÜÔ¿¿â£¨keystore£©¡£ÆäÖе±È»Ö»Óй«Ô¿£¬Ë½Ô¿ÈÔ±£ÁôÔÚBPÄÇÀï¡£
ÏÖÔÚÎÒÃÇÄÇ̨·þÎñÆ÷·¢ËÍÁËÒ»¸öдÇëÇó¸øÇý¶¯Æ÷¡£ÎÒÃǵÄÇý¶¯Æ÷ÓмÓÃܹ¦ÄÜ£¬Ö÷»úÒ²ÓмÓÃÜÇëÇó¡£Ð´³õʼ»¯¹ý³ÌÖУ¬Çý¶¯Æ÷»ñµÃÁËÁ½¸öÀ´×ÔÖ÷»ú»òÕß´úÀíµÄKEK£¨key encrypting keys£©±êÇ©£¬ËüÃÇÊÇÁ½¸ö·ûºÏRSAËã·¨KEKµÄ±ðÃû¡£Ê×ÏÈ£¬Çý¶¯Æ÷ÏòEKM·¢ËÍ»ñµÃÊý¾ÝÃÜÔ¿DKµÄÉêÇ룬EKM½Óµ½ÉêÇëºóÈ·ÈϸÃÇý¶¯Æ÷ÊÇ·ñÔÚÓÐЧÇý¶¯Æ÷ÁбíÄÚ£¬Èç¹ûÔÚÁбíÄÚ£¬EKM¾Í»á´ÓÃÜÂë·þÎñÄÇÀï»ñµÃÒ»¸öËæ»úµÄDK¡£È»ºóEKMÕÒµ½±ðÃûΪÁ½¸öKEK±êÇ©µÄKEKµÄ¹«Ô¿²¿·Ö¡£Í¬Ê±£¬EKMÔÙÏò¼ÓÃÜ·þÎñ·¢³öÉêÇ룬ÓÃÁ½¸öKEKµÄ¹«Ô¿²¿·Ö·Ö±ð¼ÓÃÜDK£¬´´½¨Á½¸öDKµÄ¼ÓÃÜʵÀý£¬¼´Éú³ÉÁËÁ½¸öEEDK£¨Íⲿ¼ÓÃÜÊý¾ÝÃÜÔ¿£©¡£
EKM½«Á½¸öEEDK·¢Ë͸ø´Å´øÇý¶¯Æ÷¡£Çý¶¯Æ÷Ôò½«ËüÃÇ´æÔÚ´Å´øµÄ¶à¸öλÖúʹŴøÄÚ´æÀï¡£´ËÍ⣬EKM»¹»áÓð²È«µÄ·½·¨°ÑDK£¨data key£©·¢Ë͸øÇý¶¯Æ÷¡£Çý¶¯Æ÷½ÓÊÕµ½DKºó£¬¾Í¿ÉÒÔÓÃËüÍê³É¼ÓÃܲÙ×÷¡£
´´½¨EEDKµÄģʽÓÐÁ½¸ö£º
- µÚÒ»ÖÖģʽÊÇÃ÷ÎÄ»òÕß±êÇ©¡£ÕâÖÖģʽÊǽ«KEK±êÇ©´æÔÚEEDKÖС£
- µÚ¶þÖÖģʽÊǹþÏ£¡£ÕâÖÖģʽÊǽ«KEKµÄ¹«Ô¿²¿·ÖµÄ¹þÏ£´æÔÚEEDKÖС£
ÔÚ¹²ÏíBPµÄKEKʱ£¬ÎÒÃǽ¨ÒéʹÓùþϣģʽ¡£ÏµÍ³¹ÜÀíºÍ¿â¹ÜÀí·½Ê½µÄ½âÃܹý³Ì
ÎÒÃÇÒÔÔÚÁíÒ»µØµã½âÃÜÊý¾ÝΪÀý¡£´Å´øÔÚËüµÄCM£¨Cartridge memory£©ÖÐÓÐÁ½¸öEEDK£¬ÎÒÃÇ³ÆÆäΪEEDK1ºÍEEDK2¡£EEDK1²ÉÓõÄÊÇÃ÷ÎÄ£¨»òÕß±êÇ©£©Ä£Ê½£¬EEDK2²ÉÓõÄÊǹþϣģʽ¡£
½«¼ÓÃܺóµÄ´ø×Ó×°Èë´ø»ú½øÐжÁ»òÕßÐøÐ´²Ù×÷¡£Ê×ÏÈÊÇ´Ó´Å´ø¶Á³öÁ½¸öEEDK¡£Çý¶¯Æ÷ÉêÇëEKM½âÃÜEEDK»ñµÃDK¡£EKMÑéÖ¤Çý¶¯Æ÷ÔÚÓÐЧÇý¶¯Æ÷ÁбíÖС£Í¨¹ýÑéÖ¤ºó£¬EKMÏòÃÜÔ¿¿â£¨keystore£©ÉêÇë»ñµÃÿ¸öÓÃÀ´´´½¨EEDKµÄ˽Կ²¿·Ö¡£ÔÚÃÜÔ¿¿âÖв»±£´æºÍEEDK1Ïà¹ØµÄKEK±êÇ©£¬µ«±£´æEEDK2µÄ¹«Ô¿µÄ¹þÏ£Öµ¡£
EKMÏò¼ÓÃÜ·þÎñ·¢³öÉêÇ룬ÇëÇóʹÓúÍEEDK2Ïà¹ØµÄKEKµÄ˽Կ½âÃÜEEDK2£¬»ñµÃDK¡£EKMÒÔ°²È«µÄ·½·¨½«DK·¢Ë͸ø´Å´øÇý¶¯Æ÷¡£ÏÖÔÚ£¬Çý¶¯Æ÷Ôò¼È¿ÉÒÔÓÃDK½âÃÜÊý¾Ý£¬Ò²¿ÉÒÔÓÃDK¼ÌÐøÏò´Å´ø×·¼ÓÊý¾Ý¡£
Ó¦ÓùÜÀí·½Ê½µÄ¼ÓÃܹý³Ì
±¾ÀýÖн«ÃèÊöʹÓÃTSM×÷ΪÃÜÔ¿¹ÜÀíÆ÷ʱ£¬¼ÓÃÜÊý¾Ý²¢Ð´Èë´Å´øµÄ¹ý³Ì¡£
Çý¶¯Æ÷ÏÈ×°ÈëÒ»ÅÌÒª¼ÓÃܵĴø×Ó£¬ÔÙ½«´Å´øµÄID»òÕß¾í±ê·¢Ë͸øTSM£¨Tivoli Storage Manager£©¡£TSMÉú³ÉÒ»¸ö256λµÄAESÊý¾ÝÃÜÔ¿£¨DK£©£¬¼ÓÃÜDK£¬½«DKÁ¬Í¬´Å´øIDÒ»Æð´æÔÚTSMµÄÊý¾Ý¿âÖС£È»ºó£¬TSM½«DK·¢Ë͸ø´Å´øÇý¶¯Æ÷¡£Çý¶¯Æ÷ʹÓÃDKºÍAESËã·¨¼ÓÃÜÊý¾Ý²¢½«¼ÓÃܺóµÄÊý¾ÝдÈë´Å´ø¡£
Ó¦ÓùÜÀí·½Ê½µÄ½âÃܹý³Ì
ÈÔÒÔTSMΪÀý¡£Çý¶¯Æ÷×°ÔØ¼ÓÃܺóµÄ´Å´ø£¬¶ÁÈ¡´Å´øµÄID»ò¾í±ê£¬²¢½«Æä·¢Ë͸øTSM¡£TSMÔÚÆäÄÚ²¿Êý¾Ý¿âÖÐÓÃIDѰÕÒÏà¹Ø¼Ç¼£¬½âÃÜÏà¹ØÏî»ñµÃDK¡£TSM½«DK·¢Ë͸ø´Å´øÇý¶¯Æ÷¡£
ÏÖÔÚ£¬´Å´øÇý¶¯Æ÷¾Í¿ÉÒÔʹÓÃÕâ¸ö256λµÄDKºÍAESËã·¨½âÃÜÊý¾ÝÁË¡£
| ×ÔÓÉ¹ã¸æÇø |
| ¡¡ |