摘要
安全路由协议设计是Adhoc网络安全研究的重要组成部分。当前研究主要集中在采用经典密码学中的方法来保证路由安全。结合可信计算中的TPM和典型的安全路由协议ARAN,提出了一种新的安全路由协议TEA-RAN,该协议不再采用集中式的公钥证书分发中心PKI,而是采用TPM中的DAA(Directed Anonymous Attestation)方式来进行节点的身份认证,以及软安全中可信阈值来监测邻居节点的行为,从而进行公钥可信分发,同时确保了无恶意节点加入网络,另外,也采用公钥签名、会话密钥加密来保证端到端通信的保密性、完整性和不可否认性。理论证明了提出的TEARAN协议能够实现网络的匿名安全,防范当前常见的攻击方式,达到了很好的安全保证效果。
The design of secure routing protocol is one of an important part of research on network security for Ad hoc networks.At present,the research mainly focuses on means of classic cryptograph to guarantee security of routing.Integrating TPM of trusted computing and typical secure routing protocol-ARAN,this paper proposed a new secure protocol called TEARAN,this protocol doesn't adopt the way of the centralized public key certificate issued center-PKI,but utilizes the technique of DAA in TPM to authenticate the identity of each node,and employs the trust threshold of soft security to monitor the behavior of neighbor nodes,so that attaining the purpose of the trust-distributed public key,in addition,avoiding malicious nodes joining in the network.This paper also assured the end to end confidentiality,integrity and non-repudiation.By theoretical analysis on the proposed TEARAN was presented to satisfy the demand of anonymous security,resist conventional malicious attacks and possess better security in effect.
出处
《计算机科学》
CSCD
北大核心
2010年第11期55-58,74,共5页
Computer Science
基金
国家自然科学基金重点项目(60633020)资助