为了物联网环境下数据传输和信息的安全,在对现有经典的物联网认证协议进行分析研究的基础上,提出了一种新的混合双向匿名认证协议。新协议是利用可信计算技术,采用基于双线性对的一次性公钥和散列函数相结合的方法。通过对安全性和效率的分析,新协议能够很好地满足物联网环境对存储和运算开销的要求,有效地保证终端与服务器端通信的隐私和数据安全,实现了双向认证和匿名认证。
For the security of data transmission and information in the Internet of things environment, this paper proposed a novel mutual authentication protocol based on the study of existed classical Internet of things authentication protocols. The no- vel protocol utilized trusted computing, and adopted a way that combined one-off public key with hash function based on the bilinear pairing. Through the analysis of safety and efficiency, the novel protocol can meet the demand of storage and compu- ting costs in the Internet of things environment, and guarantee the privacy and data security efficiently during the communica- tion between the terminal and the sever. This paper realized the mutual authentication and anonymous authentication.