首页> 外文会议>International Conference on Ubiquitous and Future Networks >A high-speed key management method for quantum key distribution network
【24h】

A high-speed key management method for quantum key distribution network

机译:量子密钥分配网络的高速密钥管理方法

获取原文

摘要

Quantum Key Distribution (QKD) is a technique for sharing encryption keys between two adjacent nodes. It provides unconditional secure communication based on the laws of physics. From the viewpoint of network research, QKD is considered to be a component for providing secure communication in network systems. A QKD network enables each node to exchange encryption keys with arbitrary nodes. However previous research did not focus on the processing speed of the key management method essential for a QKD network. This paper focuses on the key management method assuming a high-speed QKD system for which we clarify the design, propose a high-speed method, and evaluate the throughput. The proposed method consists of four modules: (1) local key manager handling the keys generated by QKD, (2) one-time pad tunnel manager establishing the transparent encryption link, (3) global key manager generating the keys for application communication, and (4) web API providing keys to the application. The proposed method was implemented in software and evaluated by emulating QKD key generation and application key consumption. The evaluation result reveals that it is capable of handling the encryption keys at a speed of 414 Mb/s, 185 Mb/s, 85 Mb/s and 971 Mb/s, for local key manager, one-time pad tunnel manager, global key manager and web API, respectively. These are sufficient for integration with a high-speed QKD system. Furthermore, the method allows the high-speed QKD system consisting of two nodes to expand corresponding to the size of the QKD network without losing the speed advantage.
机译:量子密钥分配(QKD)是一种用于在两个相邻节点之间共享加密密钥的技术。它根据物理定律提供无条件的安全通信。从网络研究的角度来看,QKD被认为是在网络系统中提供安全通信的组件。 QKD网络使每个节点都可以与任意节点交换加密密钥。但是,先前的研究并未集中在QKD网络必不可少的密钥管理方法的处理速度上。本文重点介绍了假设高速QKD系统的密钥管理方法,我们对其进行了阐明,提出了一种高速方法并评估了吞吐量。所提出的方法包括四个模块:(1)本地密钥管理器处理由QKD生成的密钥;(2)一次性填充隧道管理器建立透明加密链路;(3)全局密钥管理器生成用于应用程序通信的密钥;以及(4)Web API提供应用程序的密钥。所提出的方法在软件中实现,并通过模拟QKD密钥生成和应用程序密钥消耗进行评估。评估结果表明,对于本地密钥管理器,一次性填充隧道管理器,全局密钥管理器,它能够以414 Mb / s,185 Mb / s,85 Mb / s和971 Mb / s的速度处理加密密钥。密钥管理器和Web API。这些足以与高速QKD系统集成。此外,该方法允许由两个节点组成的高速QKD系统根据QKD网络的大小进行扩展,而不会失去速度优势。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号