北京航空航天大学学报 ›› 2006, Vol. 32 ›› Issue (07): 869-872.

• 论文 • 上一篇    下一篇

一种基于身份的移动自组网认证机制

陈炜, 龙翔, 高小鹏   

  1. 北京航空航天大学 计算机学院, 北京 100083
  • 收稿日期:2005-07-21 出版日期:2006-07-31 发布日期:2010-09-19
  • 作者简介:陈 炜(1977-),男,四川自贡人,博士生, buaa_chen@yahoo.com.cn.

Identity-based authentication scheme for mobile ad hoc networks

Chen Wei, Long Xiang, Gao Xiaopeng   

  1. School of Computer Science and Technology, Beijing University of Aeronautics and Astronautics, Beijing 100083, China
  • Received:2005-07-21 Online:2006-07-31 Published:2010-09-19

摘要: 针对移动自组网无公钥基础设施的特点,采用基于身份的密码学算法、分布式秘密共享算法和椭圆曲线加密算法,实现安全高效的移动节点认证.简单讨论基于身份的数字签名算法;介绍如何使用Lagrange插值公式,实现分布式的系统主密钥;然后给出节点密钥安全分发的模型,并在此模型的基础上,基于椭圆曲线加密算法实现安全的分布式节点密钥签发;给出算法安全性和效率分析;根据双线性对的特点,讨论会话密钥的产生和更新.给出的认证方法,具有分布式实现和安全高效的特点,同时可以非交互式产生一次性会话密钥,适用于分布式移动网络环境.

Abstract: In order to realize secure and efficient mobile node authentication in mobile ad hoc networks (MANET) which have no traditional public key infrastructure (PKI), a scheme consisting of identity-based cryptograph, distributed secrete sharing algorithm and elliptic curves encryption was proposed. Identity-based digital signature algorithm was briefly discussed. Lagrange interpolating polynomial was used to distribute master secret key among system nodes. A model describing secure node key issue was given, and a distributed procedure based on the given model was presented to securely issue node key by using elliptic curves encryption. The security and efficiency of the proposed algorithm was analyzed. According to the property of the bilinear pairing, the generation and update of session keys was discussed. The proposed authentication scheme could be used to realize efficient and secure authentication in distributed mobility scenarios, and to generate non-interactive one time session keys between two mobile nodes.

中图分类号: 


版权所有 © 《北京航空航天大学学报》编辑部
通讯地址:北京市海淀区学院路37号 北京航空航天大学学报编辑部 邮编:100191 E-mail:jbuaa@buaa.edu.cn
本系统由北京玛格泰克科技发展有限公司设计开发