节点文献
基于椭圆曲线的移动Ad hoc网络门限身份认证方案算法
Threshold Authentication Schemes Based on the Elliptic Curve for Mobile Ad hoc Network
【作者】 许俊杰;
【导师】 曾贵华;
【作者基本信息】 上海交通大学 , 通信与信息系统, 2007, 硕士
【摘要】 从20世纪90年代的移动Ad hoc网络的研究在世界范围内方兴未艾到21世纪最新兴起的无线传感器网络(WSN)的研究热潮,移动自组网络已经从无线通信领域中的一个小分支逐渐扩大到相对较独立的领域。随着研究的深入和成熟,移动自组网络诱人的应用前景将越来越接近人们的生活。然而由于移动自组网络的移动自组的动态网络拓扑特性,相对于局域网来说其安全性(包括节点可用性,数据传输的机密和完整性,节点的认证和不可抵赖性等)就变得异常脆弱。而在安全范畴中,密钥协商身份认证又是最基本、最重要的的安全机制之一。它们两者相辅相成,既保证节点的可信性,又保证网络通信是在合法节点之间进行的。本文首先介绍了研究的背景,包括移动Ad hoc网络背景知识、基本特点和安全需求和目标,并对一些信任模型进行了分析。接下来,介绍了本文的所用到的相关的数学和密码学的知识,因为文中提出一种全新的算法,需要比较广泛而且深入的数学基础。然后,关于密码学,介绍了算法中主要用到的椭圆曲线密码体制的基本概念和具体问题的计算和算法,并比较了椭圆曲线密码体制和其它密码体制的优缺点。根据已有的数学基础,本文提出一种全新的基于椭圆曲线密码体制的移动Ad hoc网络门限身份认证算法,从方案介绍,系统设计到系统初始化和参数的选择。在核心算法部分有算法的详细步骤,包括子证书的生成和最后身份认证证书的合成。整个方案具有正确性和可验证性,并给出了方案的证明。在此基础上,我们给出了算法的安全性和复杂度分析,并在最后用系统仿真验证了算法的正确性。整个方案集成公钥体制和门限签名,具有计算复杂度小、安全性高、无中心、可验证性和门限认证的鲁棒性,特别适合移动Ad hoc网络动态自组性、多跳、节点功耗较低、易被俘获、无中心节点、各个节点地位平等的特点。
【Abstract】 From the prosperity of the research of mobile ad hoc network in the 90’s of 20th century to the research tide of wireless sensor network (WSN), flourishing in the 21st century, the mobile self-building network is gradually growing from a tiny branch of the wireless communication field to a relatively independent field. In accordance with the profoundity and maturity of the research, the attractive application prospect of the mobile self-building network is approaching people’s life.However, because of the mobile and self-building dynamic network topology characteristics, the security (including the availability of the node, the confidentiality and integrity of the data transfer, the authentication of the nodes and non-repudiation, etc) are extremely fragile in comparison with the LAN. In the security category, key agreement and authentication are most basic and crucial mechanisms. They cooperate together to ensure the reliability of the nodes and that the communication is performed among the legal nodes.In this paper, the background of the research is firstly introduced, including the basic knowledge and characteristics of mobile ad hoc network and its security needs and aims. And some analyses are performed for the trust models. Afterwards, related mathematics and cryptography knowledge are inducted in the following chapter, because in this paper, a totally new algorithm is proposed, which is based on wide and profound mathematical knowledge. In terms of cryptography, the main computation and algorithm of the basic concepts and detailed problems of the elliptic curve cryptography are introduced, and the comparisons of the advantages and disadvantages between the elliptic curve cryptography and other cryptography are performed. Then, supported by the existing mathematical foundation, a fire-new threshold authentication scheme based on the elliptic curve cryptography for the mobile ad hoc network is proposed in this paper, from the introduction of the scheme and the system design to the initialization of the system and the selection of the parameters. In terms of the core algorithm, detailed processes are described, including the generation of the sub authentication and the composition of the final authentication certificate. The whole scheme is correct and verifiable and the proofs of the scheme are given. Based on that, we provided the security and complexity analyses of the algorithm and finally verified the correctness of the scheme using the simulation system.This scheme integrated the public key cryptography and threshold signature theory, having the advantages of low complexity, high security, acentric topology, verifiability and robustness of the threshold authentication, which is especially appropriate for the characteristics of mobile ad hoc network, such as dynamic self-building, multi-hop, low power supply, easy compromise, without center node and equivalent node topology, etc.
【Key words】 Mobile ad hoc network; elliptic curve cryptography; threshold authentication;
- 【网络出版投稿人】 上海交通大学 【网络出版年期】2012年 05期
- 【分类号】TN929.5;TN918
- 【被引频次】1
- 【下载频次】67