首页> 外文期刊>IEEE Journal on Selected Areas in Communications >The VersaKey framework: versatile group key management
【24h】

The VersaKey framework: versatile group key management

机译:VersaKey框架:通用的组密钥管理

获取原文
获取原文并翻译 | 示例
           

摘要

Middleware supporting secure applications in a distributed environment faces several challenges. Scalable security in the context of multicasting or broadcasting is especially hard when privacy and authenticity is to be assured to highly dynamic groups where the application allows participants to join and leave at any time. Unicast security is well-known and has widely advanced into production state. But proposals for multicast security solutions that have been published so far are complex, often require trust in network components, or are inefficient. In this paper, we propose a framework of new approaches for achieving scalable security in IP multicasting. Our solutions assure that newly joining members are not able to understand past group traffic and that leaving members may not follow future communication. For versatility, our framework supports a range of closely related schemes for key management, ranging from tightly centralized to fully distributed, and even allows switching between these schemes on-the-fly with low overhead. Operations have low complexity [O(log N) for joins or leaves], thus granting scalability even for very large groups. We also present a novel concurrency-enabling scheme, which was devised for fully distributed key management. In this paper, we discuss the requirements for secure multicasting, present our flexible system, and evaluate its properties based on the existing prototype implementation.
机译:在分布式环境中支持安全应用程序的中间件面临若干挑战。当要确保高度动态的组的隐私和真实性时,在多播或广播的上下文中可伸缩的安全性尤其困难,应用程序允许参与者随时加入和离开。单播安全性是众所周知的,已广泛进入生产状态。但是,到目前为止已经发布的多播安全解决方案的建议很复杂,通常需要对网络组件的信任,或者效率很低。在本文中,我们提出了一种新方法的框架,用于在IP多播中实现可扩展的安全性。我们的解决方案可确保新加入的成员无法了解过去的群组流量,并且离开的成员可能不会关注将来的交流。为了实现多功能性,我们的框架支持一系列紧密相关的密钥管理方案,包括从紧密集中到完全分布式的方案,甚至允许以低开销即时在这些方案之间进行切换。操作具有较低的复杂度[用于联接或离开的O(log N)],因此即使对于非常大的组,也可以授予可伸缩性。我们还提出了一种新颖的并发支持方案,该方案设计用于完全分布式的密钥管理。在本文中,我们讨论了安全多播的要求,介绍了我们的灵活系统,并根据现有的原型实现对它的属性进行了评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号