针对无线传感器网络节点在电源、计算能力和内存容量等方面的局限性,以及当前所面临比传统网络更复杂的安全威胁,提出了一种基于双线性对的无线传感器网络密钥管理和认证方案。通过由第三方PKG签名一个包括节点身份和时间标记的数据包,解决了新加入网络节点的身份审核问题,能够抵御传感器网络中大多数常见的攻击。利用双线性对生成节点间的会话密钥,减少节点之间的交互步骤,降低了能量的开销,并加入了一个随机数,解决了密钥托管问题。最后对方案的安全性和可行性进行了分析。
Due to the limitations of power, computation capability and storage resources, as well as the more complex security threats the current network faced than the traditional network, proposed a pairing based key management and authentication scheme for WSN. Through the third party PKG signing a data package including the node identity and timestamps, solved the problem of identity checking of the new node, this method could resist the most common attacks. The session key between nodes was generated using pairing, which reduced the interaction steps between nodes so as to reduced energy costs, and in the scheme added a random number which solved the key escrow problem. At last, analyzed security and feasibility of the scheme.