计算机工程与应用 ›› 2012, Vol. 48 ›› Issue (26): 96-100.

• 网络、通信、安全 • 上一篇    下一篇

基于部署前密钥分配的虚假数据过滤方案

朱凌志1,梁俊斌2,刘志雄3,黄江华1   

  1. 1.湖南工学院 计算机与信息科学学院,湖南 衡阳 421002
    2.广西大学 计算机与电子信息学院,南宁 530004
    3.中南大学 信息科学与工程学院,长沙 410083
  • 出版日期:2012-09-11 发布日期:2012-09-21

Forwarding path-undependent filtering scheme in wireless sensor networks

ZHU Lingzhi1, LIANG Junbin2, LIU Zhixiong3, HUANG Jianghua1   

  1. 1.School of Computer and Information Science, Hunan Institute of Technology, Hengyang, Hunan 421002, China
    2.School of Computer and Electronics Information, Guangxi University, Nanning 530004, China
    3.School of Information Science and Engineering, Central South University, Changsha 410083, China
  • Online:2012-09-11 Published:2012-09-21

摘要: 针对传统虚假数据过滤方法无法过滤从非转发区域注入虚假数据的问题,提出了一种不依赖转发路径的过滤方案PFDF。在PFDF中,基于期望的密钥共享度灵活构建密钥池,在部署前进行密钥分发。理论分析及仿真实验表明,PFDF能有效防范非转发区域的虚假数据注入攻击,并具备较低的能量开销。

关键词: 无线传感器网络, 虚假数据过滤, 消息验证码(MAC), 密钥池

Abstract: Aiming at the problems that the traditional false data filtering methods can’t filter false data injection attacks from non-forwarding areas of compromised nodes, this paper proposes a forwarding path-undependent filtering scheme in wireless sensor networks. In PFDF, a global key pool is constructed according to the expected keys-sharing degree, and each node initializes a key before deployment. Analysis and simulation results demonstrate that PFDF can resist false data injection attacks from non-forwarding areas of compromised nodes, and consumes less energy than existing schemes.

Key words: wireless sensor network, false data filtering, Message Authentication Code(MAC), key pool