The invention discloses a safety exchange method for an MMS specification
application layer. When an intelligent substation device uses MMS message communication, the MMS
application layer safety reinforcing exchange method enables both MMS protocol communication sides to perform identity
authentication at the application through carrying out safety improvement on the MMS
application layer and controls the access authority of an MMS
client through using role-based access based on the
authentication. The safety exchange method for the MMS specification application layer includes steps that 1) starting an MMS association
authorization function, and extending
authorization data structure; 2) through extending the
authorization data structure, using a public
encryption algorithm to carry out identity authorization on the association process of the MMS application layer, and at the same time, performing
relay attack protection; 3) using a role-based
access control technology to construct the
access control relationship between the MMS
client and MMS service, after passing the association
authentication, allowing an MMS
server to use a configured
access control relation table to carry out fine-grained access control on the MMS
client, if the MMS client meets the demand, allowing the MMS client to access the corresponding service, otherwise, refusing to provide service.