Computer Engineering and Applications ›› 2008, Vol. 44 ›› Issue (31): 125-127.DOI: 10.3778/j.issn.1002-8331.2008.31.036

• 网络、通信、安全 • Previous Articles     Next Articles

Providing certificate service scheme in cluser-based mobile Ad hoc network

BAI Xiao,YU Mei-sheng   

  1. College of Information Science and Engineering,Yanshan University,Qinhuangdao,Hebei 066004,China
  • Received:2007-12-03 Revised:2008-03-03 Online:2008-11-01 Published:2008-11-01
  • Contact: BAI Xiao

基于簇结构的移动Ad hoc网络证书服务方案

白 晓,余梅生   

  1. 燕山大学 信息科学与工程学院,河北 秦皇岛 066004
  • 通讯作者: 白 晓

Abstract: In MANET,there exist lots of limitations in the aspect of security due to its properties,so higher demands about authentication have been presented.In this paper a certification service scheme in the cluster-based architecture is proposed according to authentication technique of threshold mechanism,and the problem that the number of one-hop neighbor nodes is less than threshold value is resolved.At the same time,the authors adopt Feldman’s VSS strategy to prevent malicious nodes from providing false partial certificates,and then to decrease unreliable wireless channel’s influence on CA.Meanwhile,the synthesis efficiency of certificates is increased,and hostile counterfeit attacking can be prevented effectively.

Key words: MANET, cluster-based architecture, Shamir secret sharing, Verifiable Secret Sharing(VSS)

摘要: 移动Ad hoc网络(MANET)自身的特性使其在安全方面存在较大的局限,这给网络的认证工作提出了较高的要求。基于门限机制的认证技术,提出了一种基于簇结构的证书服务方案,解决了单跳邻居节点小于门限值的问题;同时采用Feldman的可验证秘密共享方案(VSS),防止恶意节点提供虚假的部分证书,降低不可靠的无线信道对证书服务的影响,提高了证书的合成效率,且有效防止敌方的假冒攻击。

关键词: 移动Ad hoc网络, 基于簇的体系结构, Shamir秘密共享, 可验证秘密共享