节点文献

基于单向函数树的高效分布式组密钥管理方案

Efficient distributed group key management scheme using a one-way function tree

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 李彦希赵耀林闯尹浩蒋屹新

【Author】 LI Yanxi,ZHAO Yao,LIN Chuang,YIN Hao,JIANG Yixin(Department of Computer Science and Technology,Tsinghua University,Beijing 100084,China

【机构】 清华大学计算机科学与技术系清华大学计算机科学与技术系 北京100084北京100084北京100084

【摘要】 针对集中式组密钥管理方案具有单失效点和密钥非公平产生等问题提出了一种基于单向函数树的高效分布式组密钥管理方案(D-OFT)。在该方案中,组密钥由所有合法用户共同协商产生,避免了不公平性;同时,该方案中采用分布式管理,不会形成单失效点;密钥更新消息长度保持在O(log n),具有良好的密钥更新效率;此外,方案中提供的用户加入组、离开组、组合并、组分裂等密钥更新算法均满足前向、后向安全性要求。结果表明:D-OFT方案非常适用于无中央控制节点且组成员关系动态变化的中小规模分布式安全组通信系统。

【Abstract】 An efficient,secure distributed key management scheme(D-OFT) using a one-way function tree was developed to avoid the single failure point problem and the unfairness in group key generation or refreshment algorithms in centralized group key management schemes.In the D-OFT,all valid users jointly participate in negotiating the group key,thus eliminating the unfairness in the process of generating or refreshing a group key.Moreover,the D-OFT is a distributed scheme,so there is no single failure point.The algorithm also provides efficient key updating with a small re-key message size O(log n.Security and performance analyses show that this scheme meets the required forward and backward secrecy requirements when a new member leaves or joins a group,a subgroup is merged into another subgroup,or a group is partitioned into several subgroups.Hence,the D-OFT scheme can be easily deployed in small or medium size dynamic secure group communication systems with dynamic group membership and no centralized control node.

【基金】 国家自然科学基金资助项目(60372019,60473086,90412012,90104002,60218003,60273009);国家“九七三”基础研究基金项目(2003CB314804)
  • 【文献出处】 清华大学学报(自然科学版) ,Journal of Tsinghua University(Science and Technology) , 编辑部邮箱 ,2005年10期
  • 【分类号】TN918;
  • 【被引频次】20
  • 【下载频次】247
节点文献中: 

本文链接的文献网络图示:

本文的引文网络