针对无线传感器网络节点能量、计算和存储有限的特点,以及公开密钥算法和数字签名实施认证耗能多的不足,提出一种适用于无线传感器网络的基于分簇的Merkle散列树实体认证协议(CMAS).该协议利用Merkle散列树的思想,可获得有效的安全认证策略;结合网络分簇技术,使得协议更实用;并且只使用对称密钥算法,避免了采用公开密钥算法实施数字签名计算量大的问题,有效地降低了认证的时延、增大网络生存期和提高了安全性.仿真实验证明该协议的有效性.
Wireless sensor network is characteristic of limited energy, computation and memory. Public key algorithm and digital signature consume high energy. A novel entity authentication scheme based on Merkle hash tree for Clustering-Based sensor network (CMAS) is proposed to solve such problems. This method using the concept of Merkle hash tree may obtain an effective safe authentication strategy. Combining the network clustering technology, this scheme has more practical use in large-scale network. Moreover, symmetrical key algorithm is used to avoid large computation, which effectively reduces the authentication delay, increases the network lifetime and enhances the security of the network. Simulation results show that the scheme is valid.