在分析物联网的系统模型和网络模型的基础上,提出物联网的敌手模型和密钥管理安全需求,指出一个新的需要首先解决的研究问题:ID保护的物联网T2ToI中密钥管理方案,方案需要兼顾能量高效性和健壮性.然后提出一系列密钥管理方案,包括密钥预分发、基于中央控制单元的密钥分发、基于ONS的公钥查询方案、ID保护的DNSKey方案、基于ID的密钥管理方案.每个方案均给出相应分析.
On the base of the analysis of IOT's system model and networking model, the adversary model and security requirement for key management are pointed out, and then an essential and unsolved new security problem is figured out - ID-protected key management in T2ToI of IOT, with the consideration of power efficiency and robustness. A bunch of schemes are designed and proposed, including key pre-distribution, key distribution base on central control unit, ONS-based public key distribution, ID-protected ONSKEY scheme, ID-based key management scheme. The design rationale and application considerations are also given.