针对DB08协议(Dutta和Barua的动态群密钥协商协议)不满足密钥独立性的缺陷,利用SK(Sakai和Kasahara)的密钥构造方法,提出了一个动态对等群上的基于身份的认证密钥协商协议.在新协议中计算子密钥时,利用Hash运算和增加会话标识,来避免不同会话中子密钥的关联性,因此新协议满足密钥独立性.同时新协议满足完善的前向安全性、主密钥前向安全性,以及抗主动和被动攻击等安全性.与DB08协议相比较,新协议大大降低了计算开销和通信开销,因此更适用于动态的对等网络.
The two round dynamic group key agreement protocol (DB08 protocol) proposed by Dutta and Barua doesn't provide key independence. To improve DB08 protocol, an ID-based authenticated key agreement protocol in dynamic peer groups is presented by using Sakai R and Kasahara M's key construction. To avoid the correlation of the sub-keys for different sessions, hash functions and session identifiers are included while computing the sub keys in the new protocol. So the new protocol achieves key independence, and it provides perfect forward secrecy, KGC-forward secrecy and resistance to passive and active attacks as well. Compared with DB08 protocol, the computation and communication costs are greatly reduced in the new protocol. So the new protocol is more efficient and applicable for dynamic peer network.