针对现有基于Hash链思想的组播源认证协议存在接收方认证延迟和抗丢包性弱的缺陷,提出一种基于Hash链的高效组播源认证协议。该协议结合了向前方数据包添加Hash值的方法,将链中发送的数据包签名,在接收方实现实时认证。通过合理选择目标包,增强协议抗丢包性。同时,采用在接收方添加变化阈值的方法,改进了接收方反馈子网丢包率方式,节约了网络带宽,减轻了发送方的计算开销。文中给出了具体的设计方案,与相关组播源认证协议比较,其具有实时认证、抗丢包鲁棒性、减轻网络负担和发送方计算开销的特点。
To the main limitation that current multicast source authentication protocol based on the idea of Hash-chaining have authentication delay at the receivers and are not robust against packet losses,this paper presents an effective multicast source authentication protocol based on Hash-chaining.In this protocol,the Hash value is put into preceding packet,and the first sending packet is signed in Hash-chaining,performing authentication in real-time at receivers.Through selecting object packet in a reasonable manner,the ability of tolerating packet loss is improved.At the same time,through adding threshold of variety at receiver,it changes the feedback way of losing packet ratio at receivers in subnet so as to save bandwidth and alleviate computation overheads at sender.The design of new protocol is concretely presented in this paper.Through comparing with related multicast source authentication protocol,it has the following traits:performing authentication in real-time at receivers, tolerating packet loss,saving bandwidth and alleviating computation overheads at sender.