摘要
为解决在空间网络中实施集中式密钥管理困难以及维护公钥证书开销过大等问题,论文设计了一种基于身份的分布式密钥管理方案。结合空间网络特点,给出了分布式私钥生成中心的构建方法。并利用Boneh和Franklin提出的基于身份的公钥加密体制,设计了私钥更新、主密钥分量更新和会话密钥协商等策略。分析和仿真验证,该方案能满足安全要求,具有较好的扩展性。
In order to resolve the problems of concentrating key management and over-consumption on certificate maintenance in space network, an identity-based distributed key management scheme is proposed. On the basis of the properties of space network, the method for constructing distributed private key generators is put forward. According to identity-based cryptography proposed by Boneh and Franklin, the scheme designs the methods of updating private key, updating host-key shares and negotiating session key. Analysis and simulation show that the scheme can meet the safety requirements and has good scalability.
出处
《电子与信息学报》
EI
CSCD
北大核心
2010年第1期183-188,共6页
Journal of Electronics & Information Technology
基金
国家863计划项目(2006AAJ124)资助课题
关键词
空间网络
基于身份的密码体制
门限机制
密钥管理
Space network
Identity-based cryptography
Threshold mechanism
Key management