通信学报
通信學報
통신학보
JOURNAL OF CHINA INSTITUTE OF COMMUNICATIONS
2009年
12期
68-78
,共11页
王刚%温涛%郭权%马学彬
王剛%溫濤%郭權%馬學彬
왕강%온도%곽권%마학빈
MANET%簇组密钥协商协议%秘密分享%椭圆曲线%认证
MANET%簇組密鑰協商協議%祕密分享%橢圓麯線%認證
MANET%족조밀약협상협의%비밀분향%타원곡선%인증
MANET%group key agreement protocol%secret sharing%elliptic curve%authentication
针对移动自组网中组密钥管理面临的诸多挑战,提出一种高效的安全簇组密钥协商协议(ESGKAP,effi-cient and secure group key agreement protocol).ESGKAP基于提出的高性能层簇式CCQ_n网络模型,有效地减少了组密钥协商过程中的秘密贡献交互开销,增加了协议的灵活性、可扩展性和容错性.ESGKAP无需控制中心,由秘密分发中心构造门限秘密共享,所有成员通过协商生成簇组密钥,提高了方案的安全性,且基于ECC密码体制提高了簇组密钥生成的效率.同时,提出高效的签密及门限联合签名方案,确保簇组成员能够对接收的簇组密钥份额进行验证,进一步增加了方案的安全性.使用串空间模型对ESGKAP方案进行了形式化分析,证明了其正确性和安全性.最后,通过与BD、A-GDH和TGDH协议比较,表明ESGKAP能有效减少节点和网络资源消耗,很好地适用于特定的移动自组网环境,具有更为明显的安全和性能优势.
針對移動自組網中組密鑰管理麵臨的諸多挑戰,提齣一種高效的安全簇組密鑰協商協議(ESGKAP,effi-cient and secure group key agreement protocol).ESGKAP基于提齣的高性能層簇式CCQ_n網絡模型,有效地減少瞭組密鑰協商過程中的祕密貢獻交互開銷,增加瞭協議的靈活性、可擴展性和容錯性.ESGKAP無需控製中心,由祕密分髮中心構造門限祕密共享,所有成員通過協商生成簇組密鑰,提高瞭方案的安全性,且基于ECC密碼體製提高瞭簇組密鑰生成的效率.同時,提齣高效的籤密及門限聯閤籤名方案,確保簇組成員能夠對接收的簇組密鑰份額進行驗證,進一步增加瞭方案的安全性.使用串空間模型對ESGKAP方案進行瞭形式化分析,證明瞭其正確性和安全性.最後,通過與BD、A-GDH和TGDH協議比較,錶明ESGKAP能有效減少節點和網絡資源消耗,很好地適用于特定的移動自組網環境,具有更為明顯的安全和性能優勢.
침대이동자조망중조밀약관리면림적제다도전,제출일충고효적안전족조밀약협상협의(ESGKAP,effi-cient and secure group key agreement protocol).ESGKAP기우제출적고성능층족식CCQ_n망락모형,유효지감소료조밀약협상과정중적비밀공헌교호개소,증가료협의적령활성、가확전성화용착성.ESGKAP무수공제중심,유비밀분발중심구조문한비밀공향,소유성원통과협상생성족조밀약,제고료방안적안전성,차기우ECC밀마체제제고료족조밀약생성적효솔.동시,제출고효적첨밀급문한연합첨명방안,학보족조성원능구대접수적족조밀약빈액진행험증,진일보증가료방안적안전성.사용천공간모형대ESGKAP방안진행료형식화분석,증명료기정학성화안전성.최후,통과여BD、A-GDH화TGDH협의비교,표명ESGKAP능유효감소절점화망락자원소모,흔호지괄용우특정적이동자조망배경,구유경위명현적안전화성능우세.
In order to overcome the drawback,an efficient and secure group key agreement protocol(ESGKAP)was proposed.ESGKAP was based on the cluster-based CQ_n model(CCQ_n)that effectively reduced communication overhead and improved the flexibility,scalability and fault-tolerance of the protocol.ESGKAP did not require a trusted dealer and only run an interactive protocol to generate group sharing secret key among n parties.The protocol could adapt to topological change automatically and increase the security of the protocol.The application of ECC improves the performance of group key agreement protocol.Efficient signcryption and threshold signature schemes were also proposed and the verification of the shares of sub-secret and group secret based on this scheme further enhanced the security of the protocol.Strand spaces model was used to prove the correctness and security of ESGKAP.The performance analysis results show that the proposed scheme can reduce effectively resource cost,adapt the characteristics of wireless network and is clearly superior to the existing BD,A-GDH and TGDH protocols.