在分簇的无线传感器网络中,簇内节点经常进行组播,为保证报文和节点信息的安全性,设计一种高效的组密钥管理方案。该方案采用改进的基于身份的广播加密算法,计算初始组密钥与更新节点退出时的组密钥,减少广播报文的长度,降低传输能耗。利用能耗较小的对称加密算法,加入新节点与更新密钥生命期结束时的组密钥。该方案可以抵抗同谋攻击、仿冒攻击。安全性分析结果表明,在相同的安全标准下,与EGKAS方案相比,该方案占用存储空间更小,能耗更低,且节点存储及组密钥更新开销与群组大小无关,具有良好的扩展性。
In clustering Wireless Sensor Network(WSN), within the cluster nodes often multicast, to guarantee the security of message and node information, this paper designs a flexible and efficient group key management scheme. In this scheme, the calculation of the initial set of keys and group key update when node exits, are based on the identity of the broadcast encryption algorithms, the algorithm reduces the length of the broadcast message and transport energy consumption. The new node to join and the key at the end of life period of group key update use symmetric encryption method of energy consumption. This scheme can resist conspiracy attacks, counterfeit attack. Security analysis results show, under the same security standard, compared with other schemes such as EGKAS, this scheme takes up less storage space, lower energy consumption, and storage and group key update is independent of the size, has a good scalability.