提出一种新颖的组密钥管理协议,该协议指定Internet上的不可信路由器充当演化节点,组织一棵分层的密钥参数演化树,演化并传送生成会话密钥的相关信息.通信成员被划分为子组后依附在演化节点上,并根据收到的密钥演化信息和自己持有的秘密参数计算出用于安全组通信的会话密钥.该协议的优点为密钥管理负载由树中不能泄露组通信内容的演化节点所分担,且每个演化节点的密钥管理开销独立于组规模,实验结果表明:本文的协议比已有的LKH和IOLUS协议具有更好的可扩展性.
In this paper,a novel group key management protocol is proposed.The proposed protocol designates un-trusted routers of Internet to act as evolutionary nodes organized hierarchical key parameters evolutionary tree,evolution and send relevant information to generate Session Encryption Key(SEK).Members are divided into subgroups dependent on different evolutionary nodes,and calculate the session encryption key for secure group communication based on the evolution of the key parameters received and their secret.The advantage of this protocol is the overhead of key management can be shared by evolutionary nodes which can not disclose the content of communications,and overhead of each node is independent of the number of group.The experiments show that the proposed protocol has better scalability than LKH and IOLUS.