论文部分内容阅读
针对现有密钥管理方案不适用于卫星网络的问题,文中设计了一种基于无证书的卫星网络密钥管理方案。利用门限机制实现对主密钥的保护,避免了单点失效问题。引入无证书密码机制,实现安全的私钥更新和会话密钥协商。通过更新申请时刻合法性判断机制,有效地抵御了拥有合法身份的恶意节点发起的拒绝服务攻击。该方案避免了密钥托管问题,而且不需要复杂的双线性对运算。分析表明,该方案满足安全性需求,而且具有较好的效率。
Aiming at the problem that the existing key management scheme is not applicable to satellite networks, a certificateless satellite network key management scheme is designed. The use of threshold mechanism to achieve the master key protection, to avoid the single point of failure. The introduction of certificateless password mechanism to achieve secure private key updates and session key agreement. By updating the legality judgment mechanism at the moment of application, it can effectively resist the denial of service attacks initiated by malicious nodes with legal identity. This scheme avoids the key escrow problem and does not require complex bilinear pairing. The analysis shows that the scheme meets the security requirements and has good efficiency.