为实现与CTCS-3级列控系统相关的安全信息在GSM-R系统中安全、可靠地传输,提出车-地无线通信端到端通信安全增强解决方案。该方案改进CTCS-3级列控系统的数据通信安全功能,可根据用户安全需求的不同等级,实现通信系统双向认证,或通过可信任认证中心使车载移动终端和地面无线闭塞中心(RBC)之间实现端到端认证。通过收发方的数字签名以及签名验证来提供信令完整性保护机制,防止信令被有效破坏。给出灵活的端到端信息加密解决方案,防止信息泄露、窃听,并阻止恶意入侵和干扰,使整个通信通道都得到安全保护。
To achieve the safe and reliable transmission of safety information related to Chinese Train Control System level 3,for short,CTCS-3,via GSM-R system,safe,we provide end-to-end train-wayside enhanced wireless communication solution,which improves the security functions of data communication in CTCS-3 Train Control System and realizes mutual authentication in a communication system or end-to-end authentication between a onboard mobile terminal and a RBC through a trusted authentication center according to different levels of user security requirements.A protection mechanism of signaling integrity to prevent the signaling from being destroyed effectively is provided through the receivers' and transmitters' digital signatures as well as signature verification.Finally,we gives a flexible end-to-end message encryption solution to prevent the data from being disclosed,eavesdropped and against malicious intrusion and interference so as to secure the whole communication channel.