摘要
设计了一种用于Ad hoc网络的新密钥管理与认证模型.该模型应用椭圆曲线组合公钥技术,仅在密钥初始化阶段需要可信认证中心的支持.在网络运行阶段,应用门限密码技术实现了自组织的节点公私密钥对更新和撤销,以及共享私钥种子矩阵更新.设计了一种认证与密钥协商协议,协议中用计算的方法产生公钥,减少了两次证书传递过程和验证运算.相比基于证书和基于身份的模型,新模型的安全性、灵活性和效率更高,适合Ad hoc网络自组织和资源受限的特点.
A new key management and authentication model for Ad hoc networks is proposed. In this model, the elliptic curve combined public key is applied, and the trusted authentication center support is needed only in the key initialization phase. In the operation phase, the self-organized public/private key update, revocation, and shared-private-key-matrix update are implemented with threshold cryptograph. An authentication and key agreement protocol is designed. The interlocutor's public key is produced by computing, and two-time certificate transmission and verification are therefore reduced in the protocol. Compared with the certificate-based and the identity-based models, the new model is more secure, flexible and efficient. And it is more suitable for the self-organized and resource-constrained features of Ad hoc networks.
出处
《西安电子科技大学学报》
EI
CAS
CSCD
北大核心
2007年第6期974-979,共6页
Journal of Xidian University
基金
国家自然科学基金资助(60672102)
关键词
组合公钥
门限密码
Ad
HOC网络
密钥管理
认证
椭圆曲线
combined public key
threshold cryptograph
Ad hoc network
key management
authentication
elliptic curve