针对车载自组网(VANET)的隐私保护问题,采用秘密共享技术,提出一个VANET消息认证方案。该方案使用门限代理重签名算法保护车辆隐私信息,将车载通信单元对消息的签名转换为认证中心对同一消息的签名,从而降低根据签名追踪车载单元的风险,实现通信消息的匿名性。通过门限方式将重签名密钥分散至多个路边通信单元进行管理,降低重签名密钥的破译成功率并防止路边通信单元滥用代理签名权。认证中心通过追溯发布虚假消息的真实车辆,解决违规车辆的召回问题。分析结果表明,与同类方案相比,该方案具有较高的安全性和较低的存储开销。
To resolve privacy-preserving problem in Vehicular Ad-hoc Network (VANET), a message authentication scheme is presented by using secret sharing technology. This scheme can protect the identity privacy information of vehicle by the threshold proxy re-signature algorithm. It turns a signature generated by On-board Unit(OBU) into a signature from a trusted certificate authority on the same message, so it can effectively eliminate the risk of tracking vehicle according to signature. The new scheme distributes the re-signature key into Road-side Unib (RSU). Therefore it can reduce the probability of successful decoding re-signature key and prevent RSU from misusing the re-signature rights. Authentication center can trace back to the message of the real vehicle released, and solve the problem of illegal vehicle recall. Analysis result shows that the new scheme has high security and low storage overhead compared with similar schemes,