摘要
为解决无线传感器网络基于身份加密的密钥托管问题,分析了目前比较流行的无证书和基于证书等密钥托管解决方案的特点。综合考虑能量消耗、密钥分发的追责以及抗选择密文攻击安全等因素,提出了一种自适应选择身份模型下抗选择密文攻击(IND-ID-CCA)安全的可追责的基于身份加密方案。该方案将基于身份加密和密钥分发跟踪相结合,采用k重复加密算法和一次性强不可伪造签名方案,达到了IND-ID-CCA安全。不使用随机预言给出了方案的安全证明。与无证书和基于证书的密钥协商方案进行对比仿真实验和性能分析,表明本方案以较少的能耗通过权力追责的方式减少了对密钥分发机构的信任,从而降低了恶意密钥分发造成的破坏。
To deal with the problem of key escrow of identity-based encryption problem in wireless sensor network , the characteristics of current popular key escrow solution are analyzed, such as certificateless, certificate-based and so on. Considering the energy consumption, accountable key distribution, CCA and other factors, this paper proposes an IND-ID-CCA secure accountable authority identity-based encryption (A-IBE). Based on the identity-based encryption and key distribution tracking, the scheme combines k-repetition encryption algorithm and one-time strong unforgeability signature scheme so as to reach IND-ID-CCA security. The security proof without random oracles is given. Compared with the certificateless and certificate-based key agreement schemes through simulation and analysis, the results show that the proposed scheme reduces the amount of trust in authorities in identity-based encryption through the accountable authority as a tool, thus decreasing damage of the malicious key distribution caused by dishonest private key generation with less energy consumption.
出处
《微型机与应用》
2014年第9期48-52,共5页
Microcomputer & Its Applications
基金
国家自然科学基金项目(10771092)
辽宁省教育厅基金项目(L2011186)