摘要
针对现有的虚假数据过滤策略难以防范合法数据包被恶意节点选择性丢弃的问题,提出了防范数据包选择性丢弃的途中过滤策略.策略中每个节点保存其1跳和2跳邻居节点的身份标识及单向链密钥,转发的数据包中附加的是L个节点的最新单向链密钥,而不是像传统途中过滤策略那样附加消息认证码.通过通信节点之间的共同邻居节点监听,采用逐步认证的方式递交数据包.实验结果表明,该策略不仅可高效过滤虚假数据,而且可防范途中恶意节点选择性丢弃合法数据包.
Aiming at the problem of current false data filtering strategies that cannot prevent legitimate packets from discarded by the malicious nodes selectively,an en-route filtering strategy was put forward against selectively discarding packets. In this strategy,each node keeps its one-hop and two-hop neighbor nodes' identifications as well as one-way chain keys. Moreover,what the forwarded packets attached is the latest one-way chain keys of L nodes,not the message authentication codes in traditional en-route filtering strategies. Additionally,this strategy uses the stepwise certification to submit data packets by monitoring the communications between common neighbor nodes. Experiment shows that the strategy not only can efficiently filter false data,but also can prevent malicious nodes from selectively discarding packets.
出处
《北京邮电大学学报》
EI
CAS
CSCD
北大核心
2016年第1期68-73,共6页
Journal of Beijing University of Posts and Telecommunications
基金
国家自然科学基金项目(60873221)
校博士启动基金项目(2015QD05)