
基本信息:
- 专利标题: 一种基于可信密码模块电网网站身份认证的方法及系统
- 专利标题(英):Method and system for authenticating identity of power grid website based on trusted crypto modules
- 申请号:CN201310494975.X 申请日:2013-10-21
- 公开(公告)号:CN103532961A 公开(公告)日:2014-01-22
- 发明人: 陈亮 , 林永峰 , 张国强 , 李琳 , 华晔
- 申请人: 国家电网公司 , 国网天津市电力公司 , 中国电力科学研究院
- 申请人地址: 北京市西城区西长安街86号
- 专利权人: 国家电网公司,国网天津市电力公司,中国电力科学研究院
- 当前专利权人: 国家电网公司,国网天津市电力公司,中国电力科学研究院
- 当前专利权人地址: 北京市西城区西长安街86号
- 代理机构: 天津盛理知识产权代理有限公司
- 代理人: 王来佳
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/32
The invention discloses a method and a system for authenticating the identity of a power grid website based on trusted crypto modules. The method comprises the following steps: producing an identity certificate request and sending the identity certificate request to a digital authentication center unit by a website service-side through a PIK function which is provided by a first trusted crypto module; issuing a digital certificate to the website service-side by the digital authentication center unit; sending the self identity certificate to a client-side by the website service-side, and identifying the identity certificate of the website service-side by the client-side; identifying the identity certificate of the website service-side by a second trusted crypto module after the identity certificate which is sent by the website service-side is received by the client-side. The system comprises the digital authentication center unit, the website service-side, the first trusted crypto module, the client-side and the second trusted crypto module. The identity authentication of the website and the protection over user sensitive information are realized through the provision of a reliable user certificate issuing and identity authenticating method under the condition of realizing the bidirectional identity authentication of the power grid website and the client-side user.