首页> 外文期刊>Systems and Computers in Japan >A Proposal and Its Evaluations of a Re-keying System for Dynamic Secure Group Communications
【24h】

A Proposal and Its Evaluations of a Re-keying System for Dynamic Secure Group Communications

机译:动态安全组通信的密钥更新系统的提案及其评估

获取原文
获取原文并翻译 | 示例
           

摘要

When distributing data by using IP multicast communications, means of ensuring security such as concealing distributed information and authenticating the data sender have become extremely important matters. To resolve these kinds of problems, the authors introduce dynamic secure group communications for enabling access to a multicast communications group by using an encryption key. To realize dynamic secure group communications, the group key must be updated and redistributed (re-keying) when a new user joins a communications group or a group member leaves. When the key is distributed or updated on the network, traffic problems and problems that affect data communications that accompany them must be taken into consideration. To implement services for providing multicast applications on a network, the authors propose a key distribution and updating protocol that takes into consideration system safety and reliability. In particular, they observe the wide-area network topology, determine a subgroup management server that has proxy functions on a LAN segment, and propose a system for collecting together key distribution response messages on that LAN segment and returning them to the key management server. In addition, they assume a general multicast network model and evaluate the proposed technique according to numerical calculations. The evaluation results show that in addition to shortening the key updating time in a large-scale system and reducing its effect on data communications, the proposed technique can reduce the concentration of communication traffic on the group management center.
机译:当通过使用IP多播通信来分发数据时,确保安全性的方法(例如隐藏分发的信息和对数据发送者进行身份验证)已变得极为重要。为了解决这类问题,作者引入了动态安全组通信,以允许使用加密密钥访问多播通信组。为了实现动态安全的组通信,当新用户加入通信组或组成员离开时,必须更新和重新分配组密钥(重新设置密钥)。在网络上分发或更新密钥时,必须考虑流量问题以及影响它们所伴随的数据通信的问题。为了实现在网络上提供多播应用程序的服务,作者提出了一种考虑了系统安全性和可靠性的密钥分发和更新协议。特别是,他们观察了广域网拓扑,确定了在LAN网段上具有代理功能的子组管理服务器,并提出了一种用于收集该LAN网段上的密钥分发响应消息并将其返回给密钥管理服务器的系统。此外,他们假设一个通用的多播网络模型,并根据数值计算对提出的技术进行评估。评估结果表明,该技术不仅可以缩短大型系统中的密钥更新时间,并减少其对数据通信的影响,而且还可以减少组管理中心上通信量的集中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号