期刊文献+

基于CCSDS空间数据链路安全协议的星载遥控认证保护

Satellite-Borne Transmission Control Authentication Protection Based on CCSDS Space Data Link Security Protocol
下载PDF
导出
摘要 在国际空间数据系统咨询委员会(CCSDS)规定的空间遥控系统数据传输体制下,对星载遥控认证保护进行了研究。选择了遥控数据认证保护层次,并设计了认证保护数据范围。针对上行遥控的认证保护机制与国际空间数据系统咨询委员会的空间遥控链路命令操作过程(COP-1)之间存在的"闭锁"风险,设计了重传请求保护机制。基于空间数据链路安全(SDLS)协议体制,提出了一种遥控认证帧结构模型。在该模型中,通过插入随机序列码段,使相同指令/数据帧经认证算法计算后,其结果的非线性度扩大;通过插入毫秒级精度的时间序列码段,抵御重放攻击,并极好地适应不同地面控制中心对航天器的并行控制。提出一种针对遥控认证保护的,涉及"常态"和"应急态"的安全关联(SA)周期管理的方法、密钥生存周期管理的方法,有效实现各虚拟信道的独立保护及密钥的科学管理。同时,提出一种开展星载遥控认证保护业务的算法设计方法。 The satellite-borne transmission control(TC)authentication protection is studied under the hierarchy of the TC data transmission system specified by Consultative Committee for Space Data Systems(CCSDS). The data link sub-layer used for authentication protection is selected,and the scope of protected data is designed. Due to the"lock-up"risk between the authentication protection mechanism of the uplink TC and the COP-1 command operation process of CCSDS,a retransmission request protection mechanism is designed. Based on the space data link security(SDLS)protocol system,a TC authentication frame structure model is proposed. In this model,the non-linearity of the same instruction/data frame is enlarged after the calculation with the authentication algorithm by inserting random sequence code segments. By inserting the time sequence code segments with millisecond-level precision,it resists the replay attacks and well adapts the parallel control of spacecraft by multiple satellite control centers. A security association(SA) cycle management model and a key life cycle management model involving"normal state"and"emergency state"for TC authentication protection are designed to realize the independent protection of each virtual channel and the scientific management of the key effectively. At the same time,an algorithm design method for satellite-borne TC authentication protection services is proposed.
作者 唐利锋 崔阳 刘晓瑞 刘希红 TANG Lifeng;CUI Yang;LIU Xiaorui;LIU Xihong(Shanghai Aerospace Electronics Co.,Ltd.,Shanghai 201821,China;Innovation Academy for Microsatellites,Chinese Academy of Sciences,Shanghai 201210,China)
出处 《上海航天(中英文)》 CSCD 2021年第4期118-127,共10页 Aerospace Shanghai(Chinese&English)
基金 上海市科学技术委员会全球多媒体卫星系统项目(17DZ1100700)。
关键词 国际空间数据系统咨询委员会(CCSDS) 空间数据链路安全协议(SDLS) 通信操作程序 COP-1 密钥 MD5 Consultative Committee for Space Data Systems(CCSDS) space data link security(SDLS)protocol communication operation procedure COP-1 key message digest-5(MD5)
  • 相关文献

参考文献4

二级参考文献34

  • 1邢书宝,李刚,薛惠锋.一次一密加密系统设计与实现[J].计算机技术与发展,2007,17(3):150-152. 被引量:13
  • 2CCSDS 350.1-G-1. Security threats against space missions[S]. Washington, USA, National Aeronautics and Space Administration, 2006.
  • 3CCSDS 350.0-G-2, The application of CCSDS to secure systems[S]. Washington, USA, National Aeronautics and Space Administration, 2006.
  • 4CCSDS Security Working Group. Recommended practice for authentication, http://cwe.ccsds.org/sea/docs/, March 2007.
  • 5Spinsante S, Chiaraluce F, and Gambi E. New perspectives in telecommand security: The application of EAX to TC segments[C]. Proc. Data Systems In Aerospace (DASIA), Naples, Italy, 2007: 296-303.
  • 6Fischer D, Merri M, and Engel T. Introducing a generic security extension for the packet TM/TC protocol stack[C]. 4th ESA International Workshop on Tracking, Telemetry and Command Systems for Space Applications, Darmstadt, Germany, 2007: 235-242.
  • 7Fischer D, Engel T, and Merri M. Approach of the integration of data security in the CCSDS packet TM/TC standards[C]. Ninth International Conference on Space Operations (Spaceops), Rome, Italy, June 19-23 2006:524-531.
  • 8CCSDS 232.0-B-1, TC Space data link protocol[S]. Washington, USA, National Aeronautics and Space Administration, 2003.
  • 9CCSDS 232.1-B-1, Command operation procedures-1[S]. Washington, USA, National Aeronautics and Space Administration, 2003.
  • 10St Denis T and Johnson S. Cryptography for Developers[M]. Washington, USA, Syngress Publishing, 2007: 239-244.

共引文献7

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部