摘要
针对现有蓝牙配对协议难以抵抗中间人攻击、复制攻击的问题,提出了一种从设备零秘密存储的蓝牙密钥协商方案。该方案利用物理不可克隆函数(Physical Unclonable Functions,PUF),在从设备不存储任何秘密参数的情况下,通过"三次握手"实现主设备与从设备的双向认证及链路密钥协商。理论分析和实验结果表明,该方案不仅具有较高的安全性,而且通信、计算和存储开销均较小。
To solve the problem that the existing bluetooth pairing protocol is difficult to resist the man-in-the-middle attacks and replication attacks,a bluetooth key agreement scheme with zero secret storage in slave device was proposed.By using the Physical Unclonable Functions(PUF),this scheme realized the mutual authentication and link key agreement between the master device and the slave device through “three-time handshake” in the case that the slave device need not store any secret parameters.Theoretical analysis and experimental results show that the proposed scheme not only has high security,but also needs less communication,calculation and storage cost.
作者
李森森
黄一才
郁滨
LI Sen-sen;HUANG Yi-cai;YU Bin(Information Engineering University,Zhengzhou 450001,China)
出处
《计算机科学》
CSCD
北大核心
2019年第4期151-157,共7页
Computer Science
基金
国防信息保障技术重点实验室开放基金(KJ-15-104)资助
关键词
蓝牙
PUF
密钥协商
中间人攻击
复制攻击
Bluetooth
PUF
Key agreement
Man-in-the-middle attack
Replication attack