首页 | 本学科首页   官方微博 | 高级检索  
     

一种新的基于混合策略的动态组密钥管理方案
引用本文:康巧燕,孟相如,王建峰,陈茂. 一种新的基于混合策略的动态组密钥管理方案[J]. 系统工程与电子技术, 2007, 29(8): 1389-1393
作者姓名:康巧燕  孟相如  王建峰  陈茂
作者单位:1. 空军工程大学电讯工程学院,陕西,西安,710077
2. 兰州军区通信网络技术管理中心,甘肃,兰州,730000
摘    要:针对大型动态组通信,提出一种基于Iolus LKH SKDC混合策略的组密钥管理方案。该方案中全局组控制器通过密钥树来管理各个子组控制器,每个子组内采用改进的LKH SKDC方案管理子组成员;子组管理器根据成员ID值,利用单向散列函数计算成员所在路径上各节点密钥值。该方案具有分组管理和集中管理的优点以及良好的可伸缩性,它使LKH方案中的单点失效问题限制在子组范围内,不会对全局产生影响。理论分析和数值结果表明,该方案中子组管理器的密钥存储和动态更新开销大大减少,且用户在加入和退出子组时不会随机产生更新密钥,具有较好的综合性能。

关 键 词:密钥管理  密钥更新  密钥树  节点坐标  单向散列函数
文章编号:1001-506X(2007)08-1389-05
修稿时间:2006-07-21

Novel key management scheme based on hybrid strategy for large dynamic multicast
KANG Qiao-yan,MENG Xiang-ru,WANG Jian-feng,CHEN Mao. Novel key management scheme based on hybrid strategy for large dynamic multicast[J]. System Engineering and Electronics, 2007, 29(8): 1389-1393
Authors:KANG Qiao-yan  MENG Xiang-ru  WANG Jian-feng  CHEN Mao
Abstract:A key management scheme based on hybrid strategy of Iolus LKH SKDC for dynamic multicast is proposed.Novel the group security controller(GSC) manages the various subgroup security controllers(SGSCs) using the key tree in this scheme,and every SGSC manages its users using the improved LKH SKDC scheme.The node coordinates are introduced to mark the key tree so that the coordinates of the various nodes on the path of the user location can be easily obtained and the subgroup to which the user belongs is easily known according to the coordinate of the user.The keys on path of the user location are computed by the subgroup manager using one-way hash function according to the user ID.This scheme is provided with the characteristics of Both keys grouping management and keys delaminating management and expansibility as well.And the single invalidation in LKH scheme can be effectively restricted within each subgroup which avoids the influence on the overall situation.Simulation results show that the keys storage amount of the subgroup manager and the cost of rekeying are significantly reduced.The proposed scheme has better performance for large dynamic multicast.
Keywords:key management  rekeying  key tree  node coordinates  one-way hash function
本文献已被 CNKI 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号