首页> 外文OA文献 >A robust certification service for highly dynamic MANET in emergency tasks
【2h】

A robust certification service for highly dynamic MANET in emergency tasks

机译:为紧急任务中的高动态maNET提供强大的认证服务

摘要

In emergency tasks, cross-agency operations being carried out in disaster-hit areas require some supporting communication system for command and control. Mobile Ad hoc Network (MANET) is a very suitable way to meet such communication requirements since it can function without any pre-installed communication infrastructure. Owing to potential threats in the field environment and the unique features of MANET (e.g. the open nature of wireless links and the absence of security infrastructure), security of communications over MANET is a serious issue that is typically addressed by asymmetric cryptographic mechanisms. In this paper, we tackle issues critical to asymmetric key management in MANET, which almost invariably serves as a basis of security services in a network environment. To address the deficiencies of existing key management schemes, we propose the concept of mission-specific certificate to manage public keys in our scenario. For issuance and/or revocation of mission-specific certificate, a Mission-specific Certificate Authority (MCA), which consists of a collection of server nodes to operate the threshold cryptographic scheme, is proposed. Furthermore, to cater for the occurrence of network partitioning, which is common in highly dynamic MANET, we propose a partition-tolerant mechanism for MCA by introducing the notion of auxiliary server nodes. We discuss the security and performance of our scheme and show that our approach is a secure and partition-tolerant mechanism can effectively improve availability of the MCA. Copyright (C) 2009 John Wiley & Sons, Ltd.
机译:在紧急任务中,在受灾地区执行的跨机构行动需要一些支持性通信系统来进行指挥和控制。移动自组织网络(MANET)是满足此类通信要求的一种非常合适的方法,因为它可以在没有任何预装通信基础结构的情况下运行。由于现场环境中的潜在威胁以及MANET的独特功能(例如无线链接的开放性和缺乏安全基础结构),MANET上通信的安全性是一个严重的问题,通常通过非对称密码机制来解决。在本文中,我们解决了MANET中非对称密钥管理的关键问题,MANET几乎总是作为网络环境中安全服务的基础。为了解决现有密钥管理方案的不足,我们提出了特定任务证书的概念来管理我们方案中的公共密钥。为了颁发和/或撤销特定于任务的证书,提出了特定于任务的证书颁发机构(MCA),该证书颁发机构由一组服务器节点组成,用于操作阈值加密方案。此外,为了适应高动态MANET中常见的网络分区的发生,我们通过引入辅助服务器节点的概念为MCA提出了一种容忍分区的机制。我们讨论了该方案的安全性和性能,并表明我们的方法是一种安全且具有分区容忍性的机制,可以有效地提高MCA的可用性。版权所有(C)2009 John Wiley&Sons,Ltd.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号