位置:成果数据库 > 期刊 > 期刊详情页
空间信息网的分布式证书撤销机制
  • 期刊名称:宇航学报
  • 时间:0
  • 页码:1778-1785
  • 语言:中文
  • 分类:TP393.08[自动化与计算机技术—计算机应用技术;自动化与计算机技术—计算机科学与技术]
  • 作者机构:[1]西安电子科技大学计算机网络与信息安全教育部重点实验室,西安710071
  • 相关基金:国家自然科学基金(60872041); 中央高校基本科研业务(JY1000903001)
  • 相关项目:自组织可重构的空间信息网安全组网技术研究
中文摘要:

针对以卫星网络为核心的空间信息网分析其安全隐患与安全目标,提出使用公钥证书机制作为其基本安全机制。根据空间信息网没有中心节点这一特点,给出了一种分布式证书撤销算法及其具体实现细节。该算法中任意节点可以对异常节点发起撤销指控,当指控量达到一定门限值时撤销异常节点的证书。网络中的节点只需维护两张表以标识全网节点证书状态,极大地减少了通信量。该算法可以防止被撤销节点发起有效指控,并且能够以很高的概率抵抗恶意节点的非法指控攻击。

英文摘要:

The increasing prominence of a space information network consisted of satellite networks and other grand stations is stimulating greater interest in developing adequate security mechanism for this newborn hybrid network.Security risks in the space information network and the security goals to be achieved are analyzed,and the public key cryptography is proposed as the basis of security architecture.The issue of certificate revocation in this type of network is a challenge problem because there are no central nodes in it and no on-line accesses to trusted authorities distributed on the ground.A distributed certificate revocation algorithm is proposed for the space information network.In this scheme,any node within the network is allowed to accuse the abnormal behaviors of entities and the certificate of the node will be revoked when its revocation quotient reaches its threshold.The algorithm can prevent effective accusations made by revoked nodes and resist illegal accusation attacks of malicious nodes at a high probability.

同期刊论文项目
同项目期刊论文