通信学报 ›› 2023, Vol. 44 ›› Issue (6): 103-116.doi: 10.11959/j.issn.1000-436x.2023055

• 学术论文 • 上一篇    下一篇

车联网中基于环的匿名高效批量认证与组密钥协商协议

张海波1,2, 兰凯1,2, 陈舟1,2, 王汝言1,2, 邹灿3, 王明月1,4   

  1. 1 重庆邮电大学通信与信息工程学院,重庆 400065
    2 先进网络与智能互联技术重庆市高校重点实验室,重庆 400065
    3 三六零数字安全科技集团有限公司,北京 100015
    4 丹麦奥尔堡大学,奥尔堡 9220
  • 修回日期:2023-02-06 出版日期:2023-06-25 发布日期:2023-06-01
  • 作者简介:张海波(1979- ),男,重庆人,博士,重庆邮电大学副教授、硕士生导师,主要研究方向为车联网、安全认证、密钥协商等
    兰凯(1998- ),男,重庆人,重庆邮电大学硕士生,主要研究方向为车联网、安全认证、密钥协商
    陈舟(1999- ),男,四川遂宁人,重庆邮电大学硕士生,主要研究方向为车联网、认证协议、密钥协商
    王汝言(1969- ),男,湖北浠水人,博士,重庆邮电大学教授、博士生导师,主要研究方向为泛在网络、多媒体信息处理等
    邹灿(1982- ),男,重庆人,三六零数字安全科技集团有限公司工程师,主要研究方向为大数据、信息安全、数字经济
    王明月(1990- ),女,重庆人,重庆邮电大学博士生,主要研究方向为移动通信安全技术
  • 基金资助:
    国家自然科学基金资助项目(61901071);国家自然科学基金资助项目(61801065);长江学者和创新团队发展计划基金资助项目(IRT16R72);重庆市留创计划创新类基金资助项目(cx2020059)

Ring-based efficient batch authentication and group key agreement protocol with anonymity in Internet of vehicles

Haibo ZHANG1,2, Kai LAN1,2, Zhou CHEN1,2, Ruyan WANG1,2, Can ZOU3, Mingyue WANG1,4   

  1. 1 School of Communication and Information Engineering, Chongqing University of Posts and Telecommunications, Chongqing 400065, China
    2 Advanced Network and Intelligent Connection Technology Key Laboratory of Chongqing Education Commission of China, Chongqing 400065, China
    3 360 Digital Security Technology Group Co., Ltd., Beijing 100015, China
    4 Aalborg University, Aalborg 9220, Denmark
  • Revised:2023-02-06 Online:2023-06-25 Published:2023-06-01
  • Supported by:
    The National Natural Science Foundation of China(61901071);The National Natural Science Foundation of China(61801065);The Program for Changjiang Scholars and Innovative Research Team in University(IRT16R72);Chongqing Innovation and Entrepreneurship Program for the Returned Overseas Chinese Scholars(cx2020059)

摘要:

针对当前批量认证与密钥协商协议依赖于半可信路边单元(RSU)且不适用于大规模车联网(IoV)场景下密钥更新的问题,提出了IoV中基于环的匿名高效批量认证与组密钥协商协议。通过假名机制确保匿名性,利用混沌映射安全构建认证密钥对,并通过少量双线性映射快速完成对大批车辆的批量认证。充分考虑大规模IoV场景下车辆加入与离开情况,利用混沌映射半群性高效构建环状会话组,设计了适用于大规模车辆的组密钥建立与更新机制。此外,该协议设定了假名更新与匿名追溯机制确保更安全的会话过程,同时利用 BAN 逻辑模型证明了协议语义安全性。安全性分析与仿真结果表明,所提协议具备多重安全属性且拥有一定的效率优势。

关键词: 车联网, 批量认证, 组密钥协商, 混沌映射, 密钥更新机制

Abstract:

Aiming at the problem that the current batch authentication and key agreement protocol were relied on semi-trusted road side unit (RSU) and were not suitable for key update in large-scale Internet of vehicles (IoV), a ring-based efficient batch authentication and group key agreement protocol with anonymity in IoV was proposed.The anonymity was ensured by the pseudonym mechanism.The authentication key pairs were constructed by the chaotic map, and the batch authentication for many vehicles was quickly completed by a small number of bilinear maps.The joining and leaving of vehicles in large-scale IoV scenario were fully considered, a ring session group was efficiently constructed by using the semi-group property of chaotic maps, and a group key establishment and update mechanism suitable for large-scale vehicles was designed.In addition, a pseudonym update mechanism and an anonymous tracing mechanism were designed to ensure a more secure session process.At the same time, the BAN logic model was used to prove the semantic security of the protocol.The security analysis and simulation results show that the proposed protocol has multiple security attributes and certain efficiency advantages.

Key words: IoV, batch authentication, group key agreement, chaotic mapping, key update mechanism

中图分类号: 

No Suggested Reading articles found!