由于空间信息网中结点的移动性,在空间信息网中实现传统的群组密钥管理面临许多困难。根据空间信息网的特点,分析了空间信息网中群组密钥管理方案的需求,设计了一个适用于LEO/MEO双层空间信息网络的群组密钥管理方案,采用基于身份的思想,消除了对证书系统的依赖,能在空间信息网中灵活高效地实现。将空间信息网中的结点根据其逻辑位置划分为簇,其中簇头为MEO卫星,在密钥交换阶段中共享密钥仅由所有簇头结点决定,这种机制大大减少了通信量。方案能有效抵抗外部攻击者,并且具有前向保密性和后向保密性。仿真实验表明,方案具有很高的通信效率。
Many studies are conducted on security for space information networks composed of a small number of ground stations and relatively more satellites-about several dozens in normal condition.A group key management is used to implement secure communication in space information networks in this paper.It is difficult to implement the traditional group key management scheme in a space information network due to its dynamic topology.Based on the analysis of features of LEO/MEO double-layer space information network,a novel identity based group key management scheme is proposed in which all nodes in a space information network are divided into clusters and MEO satellites are used as cluster heads.Further more,in group key establishment step,only cluster heads are devoted into the group key.Thus traffic of our scheme is greatly reduced.Additionally,security analysis shows that the proposed scheme achieves both forward security and backward security,and security against outside attackers.Simulations show that the proposed scheme takes advantage of high communication efficiency.