摘要
密钥管理系统为网络中的各节点提供密钥的分配和更新服务,是实施网络安全服务,保证信息安全的基础。针对卫星网络的结构和通信特点,设计了一种新的包含会话密钥、主密钥和公钥的密钥管理模型。首先,设计了公钥更新协议,并对其安全性进行了分析;其次,通过对比分析,对会话密钥更新和主密钥更新的策略进行了设计,并对其安全性以及效率进行了详细分析。最后,在卫星网络仿真环境下实现了密钥更新过程。结合仿真测试数据,与IBM混合密钥管理模型进行比较,并给出了设计密钥更新策略时的重要参考依据。
Key management system is in charge of key distribution and updating services for the networks. It is fundamental in providing secure services and ensuring information security. Based on the structure and communication features of satellite networks, a key management model was proposed which includes certificates, primary keys and session keys. Firstly, a protocol was designed for updating certificates of satellites and its security was studied. Secondly, a policy was designed for updating primary and session keys and its efficiency and security were analyzed by contrasts with other options. Lastly, the key updating processes were implemented under simulated satellite network environment. Based on test data, further contrast between our model and IBM's hybrid key management model was proposed and important suggestions in designing key updating policies were given.
出处
《系统仿真学报》
CAS
CSCD
北大核心
2009年第13期4153-4158,共6页
Journal of System Simulation
基金
中国科学院支撑技术项目
中国科学院创新基金项目(CXJJ-251)
关键词
卫星网络
密钥管理
模型
协议
仿真
satellite networks
key management
model
protocol
simulation