...
首页> 外文期刊>IEEE transactions on dependable and secure computing >Scalable Certificate Revocation Schemes for Smart Grid AMI Networks Using Bloom Filters
【24h】

Scalable Certificate Revocation Schemes for Smart Grid AMI Networks Using Bloom Filters

机译:使用布隆过滤器的智能电网AMI网络的可扩展证书吊销方案

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Given the scalability of the advanced metering infrastructure (AMI) networks, maintenance and access of certificate revocation lists (CRLs) pose new challenges. It is inefficient to create one large CRL for all the smart meters (SMs) or create a customized CRL for each SM since too many CRLs will be required. In order to tackle the scalability of the AMI network, we divide the network into clusters of SMs, but there is a tradeoff between the overhead at the certificate authority (CA) and the overhead at the clusters. We use Bloom filters to reduce the size of the CRLs in order to alleviate this tradeoff by increasing the clusters’ size with acceptable overhead. However, since Bloom filters suffer from false positives, there is a need to handle this problem so that SMs will not discard important messages due to falsely identifying the certificate of a sender as invalid. To this end, we propose two certificate revocation schemes that can identify and nullify the false positives. While the first scheme requires contacting the gateway to resolve them, the second scheme requires the CA additionally distribute the list of certificates that trigger false positives. Using mathematical models, we have demonstrated that the probability of contacting the gateway in the first scheme and the overhead of the second scheme can be very low by properly designing the Bloom filters. In order to assess the scalability and validate the mathematical formulas, we have implemented the proposed schemes using Visual C. The results indicate that our schemes are much more scalable than the conventional CRL and the mathematical and simulation results are almost identical. Moreover, we simulated the distribution of the CRLs in a wireless mesh-based AMI network using ns-3 network simulator and assessed its distribution overhead.
机译:鉴于高级计量基础结构(AMI)网络的可扩展性,证书吊销列表(CRL)的维护和访问带来了新的挑战。为所有智能电表(SM)创建一个大型CRL或为每个SM创建定制的CRL效率低下,因为将需要太多的CRL。为了解决AMI网络的可伸缩性,我们将网络划分为SM集群,但是在证书颁发机构(CA)的开销与集群的开销之间需要权衡。我们使用Bloom过滤器减小CRL的大小,以通过以可接受的开销增加群集的大小来减轻这种折衷。然而,由于布隆过滤器遭受误报,因此需要处理该问题,使得由于错误地将发送者的证书标识为无效,因此SM将不会丢弃重要消息。为此,我们提出了两种证书吊销方案,它们可以识别并消除误报。第一种方案需要联系网关来解决它们,而第二种方案需要CA额外分发触发误报的证书列表。使用数学模型,我们已经证明,通过适当设计Bloom过滤器,在第一种方案中联系网关的可能性和第二种方案的开销可以非常低。为了评估可伸缩性并验证数学公式,我们使用Visual C实现了所提出的方案。结果表明,我们的方案比常规CRL具有更大的可伸缩性,并且数学和仿真结果几乎相同。此外,我们使用ns-3网络模拟器模拟了基于无线网格的AMI网络中CRL的分布,并评估了其分布开销。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号