期刊文献+

一种新的基于混合策略的动态组密钥管理方案

Novel key management scheme based on hybrid strategy for large dynamic multicast
下载PDF
导出
摘要 针对大型动态组通信,提出一种基于Iolus+LKH+SKDC混合策略的组密钥管理方案。该方案中全局组控制器通过密钥树来管理各个子组控制器,每个子组内采用改进的LKH+SKDC方案管理子组成员;子组管理器根据成员ID值,利用单向散列函数计算成员所在路径上各节点密钥值。该方案具有分组管理和集中管理的优点以及良好的可伸缩性,它使LKH方案中的单点失效问题限制在子组范围内,不会对全局产生影响。理论分析和数值结果表明,该方案中子组管理器的密钥存储和动态更新开销大大减少,且用户在加入和退出子组时不会随机产生更新密钥,具有较好的综合性能。 A key management scheme based on hybrid strategy of Iolus+LKH+SKDC for dynamic multicast is proposed. Novel the group security controller (GSC) manages the various subgroup security controllers (SGSCs) using the key tree in this scheme, and every SGSC manages its users using the improved LKH+SKDC scheme. The node coordinates are introduced to mark the key tree so that the coordinates of the various nodes on the path of the user location can be easily obtained and the subgroup to which the user belongs is easily known according to the coordinate of the user. The keys on path of the user location are computed by the subgroup manager using one-way hash function according to the user ID. This scheme is provided with the characteristics of Both keys grouping management and keys delaminating management and expansibility as well. And the single invalidation in LKH scheme can be effectively restricted within each subgroup which avoids the influence on the overall situation. Simulation results show that the keys storage amount of the subgroup manager and the cost of rekeying are significantly reduced. The proposed scheme has better performance for large dynamic multicast.
出处 《系统工程与电子技术》 EI CSCD 北大核心 2007年第8期1389-1393,共5页 Systems Engineering and Electronics
关键词 密钥管理 密钥更新 密钥树 节点坐标 单向散列函数 key management rekeying key tree node coordinates one-way hash function
  • 相关文献

参考文献5

二级参考文献34

  • 1[1]Ballardie. A scalable multicast key distribution [S].RFC1949, May 1996.
  • 2[2]Wong C K, Gouda M, Lam S S. Secure group communications using key graphs [M]. ACM SIGCOMM, 1998.
  • 3[3]Waller D,Harder E,Agee R. Key management for multicast: issues and architectures. RFC2627,1999.
  • 4RFC2236. Internet Group Management Protocol, V. :2. [ S ].
  • 5D Wallner, E Harder, R Agee. Key management for multicast: Issues and Architectures, IETF Internet Draft [Z]. 1998.
  • 6C K Wong, M G Gouda, S S Lain. Secure group communications using key graphs [A] .Proceedings of ACM SIC, COMM'98 [C] .New York:ACM Press, 1998.68 - 79.
  • 7S Setia, S Koussih, S Jajodia, E Harder. Kronos: a scalable group rekeying approach for secure multicast [ A ]. IEEE Symposium on Security and Privacy [C]. Oakland(USA) CA: IEEE Computer Society Press,2000.215-228.
  • 8X S Li,Y R Yang, M G Gouda, S S Lain. Batch rekeying for secure group communications [ A ]. Proceedings of Tenth International World Wide Web Conference [ C ]. Hongkong: ACM,2001.
  • 9K Almeoth, M Ammar. Collection and modeling of the join/leave behavior of multicast group members in mbone [ A]. Proceedings of High Performance Distributed Canputing Focus Workshop(HPDC'96) [ C].New York:IIPDC, 1996.
  • 10Y R Yang, X S Li, X B Zhang, S S Lain. Reliable group rekeying: a performance analysis[ A]. Proceedings of ACM S1GCOMM '01 [ C]. San Diego, California: ACM, 2001.

共引文献31

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部