节点文献
无线局域网中基于身份签名的接入认证方案
Access Authentication Scheme Using Identity-based Signature in Wireless Local Area Network
【摘要】 目前无线局域网中的典型接入认证方案不能较好地支持双向认证,并且效率较低。针对上述问题,利用基于身份签名技术,提出一种新的双向接入认证方案。给出方案的初始化过程、实体间认证协议以及基于该接入认证方案的密钥协商协议,并对密钥协商协议进行效率和安全性分析,结果表明,该协议能以较小的计算代价,实现已知密钥安全、前向安全、未知密钥分享和密钥控制。与EAP-TLS和WAPI2接入认证方案相比,该方案具有无证书、双向认证以及认证效率高等优势。
【Abstract】 Aiming at the problems such as bidirectional access authentication can not be supported and low efficiency in typical Wireless Local Area Network(WLAN)access authentication schemes,this paper proposes a bidirectional access authentication scheme using the Identity-based Signature(IBS). The scheme’s initialization process,inter-entity authentication protocol,and an efficient key agreement protocol based on that access authentication scheme are given. The efficiency and safety property of the key agreement protocol are analyzed. Results show that this protocol not only has the expense of small computational cost,but also achieves known key security,forward security,unknown key sharing and key control. This is the advantage that other similar protocols do not have. Finally,this paper compares the proposed scheme with EAP-TLS and WAPI scheme in the aspects of performance,the results show that the proposed scheme has advantages of no certificate,mutual authentication and efficient authenticating.
【Key words】 Wireless Local Area Network(WLAN); bidirectional access authentication; Identity-based Signature(IBS); key agreement; EAP-TLS scheme; WAPI scheme;
- 【文献出处】 计算机工程 ,Computer Engineering , 编辑部邮箱 ,2014年12期
- 【分类号】TN925.93;TN918.4
- 【被引频次】9
- 【下载频次】130