摘要
分析了Ad Hoc网络的特点及其对身份认证机制的安全需求,采用椭圆曲线和对称密钥两种认证体制并结合自证明公钥原理,提出了一种适用于Ad Hoc网络的混合认证机制。该机制中门限方案增强了系统的健壮性,基于自证明公钥的双向认证协议确保了交互节点身份的真实性,刷新认证协议保证了节点身份的持续可信,分布式自证明公钥撤销方案可将恶意节点快速从系统中分离出去。分析结果表明,该认证机制具有较高的安全性,同时对系统存储空间、网络通信量和计算开销的要求都很少,有着较高的效率。
After analyzing the characteristics and the authentication secure requirements ofAd Hoc networks, based on ECC and symmetric key authentication system, a hybrid authentication mechanism is proposed, which combines self-certified public key theory.Threshold scheme enhances system more stable. Mutual authentication based on self-certified public key guarantees nodes to communi- cate with the right one. The renewal authentication protocol ensures the node' s identity be continuance trusted. While the distributed self-certified public key revocation scheme makes it practicable to draw malicious nodes away from Ad Hoc network. Analyses show that the scheme has higher security, more efficient and has advantages in storage, communication overheads and computation cost.
出处
《计算机工程与设计》
CSCD
北大核心
2009年第15期3481-3483,3490,共4页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2006AA701416
2007AA701309)
关键词
AD
HOC网络
椭圆曲线
认证机制
自证明公钥
门限
Ad Hoc networks
ECC
authentication mechanism
self-certified public key
threshold