信息安全研究 ›› 2021, Vol. 7 ›› Issue (E1): 191-.

• 优秀论文 • 上一篇    下一篇

移动端国密硬件密码模块SIMKEY解决方案

郑海刚;谈科华;徐斐   

  1. (亚信科技(成都)有限公司接入安全事业部南京210012)
  • 出版日期:2022-04-20 发布日期:2022-04-22
  • 通讯作者: 郑海刚 硕士,软件设计师.主要研究方向为信息安全体系建设、密码应用解决方案. zhenghg2@asiainfosec.com
  • 作者简介:郑海刚 硕士,软件设计师.主要研究方向为信息安全体系建设、密码应用解决方案. zhenghg2@asiainfosec.com 谈科华 软件设计师.主要研究方向为互联网安全、物联网安全、密码应用方向. tankh@asiainfosec.com 徐斐 系统架构师.主要研究方向为密码技术在物联网环境下的具体应用. xuf@asiainfosec.com

SIMKEY Solution for Chinese SM Hardware Cryptography Module on  Mobile Terminal

  • Online:2022-04-20 Published:2022-04-22

摘要: 在手机和平板电脑等类型的移动智能终端上,一直缺少类似于PC端USB Key的通用密码设备,导致在移动端开展关键业务时缺少安全支撑,对移动端的业务向深度和广度发展形成了阻碍.为了解决这一问题,亚信安全提出了一种通用型的移动端国密硬件密码模块SIMKEY解决方案.SIMKEY作为专用型SIM卡,符合电信运营商SIM卡类规范,适用于各种智能手机和平板电脑,产品拥有商用密码产品认证证书.除具有标准的通信功能外,卡内还能提供各种密码能力,包括加密解密、签名验签、杂凑等密码运算服务以及密钥生成与管理、数字证书存储和使用、关键数据存储等功能.SIMKEY具有多种应用场景,如数字身份认证、电子签名验签、VPN拨入认证、PC端扫码使用等.同时,针对物联网的需求,SIMKEY也支撑不同密钥体系的物联网安全方案.

关键词: 密码, 国密, 证书, 移动端, 密码模块, 商用密码, 智能IC卡

Abstract: For mobile smart terminals such as mobile phones and tablet computers, there has been a lack of universal cryptographic devices similar to USB Key on the PC side. This leads to a lack of security support when carrying out key services on the mobile side, which hinders the development of the depth and breadth of the mobile side business. In order to address this problem, Asiainfo Security has proposed a universal solution  about Chinese SM hardware cryptographic module called SIMKEY on the mobile side. As a dedicated SIM card, SIMKEY conforms to the SIM card specifications of telecom operators and is suitable for all kinds of smart phones and tablet computers. The product has a commercial cryptographic product certification certificate. In addition to standard communication functions, the card can also provide various cryptographic capabilities, including: encryption and decryption, signature and signature verification, hashing and other cryptographic computing services, as well as key generation and management, digital certificate storage and use, and key data storage. SIMKEY has a variety of application scenarios, such as: digital identity authentication, electronic signature verification, VPN dialin authentication, PCside scanning code use, etc. Meanwhile, in response to the needs of the Internet of Things, SIMKEY also supports IOT security solutions with different key systems.

Key words: cryptography, Chinese SM cryptography, certificate, mobile terminal, cryptography module, commercial cryptography, smart IC card