首页 | 本学科首页   官方微博 | 高级检索  
     

可证明安全的节点不相交多路径源路由协议
引用本文:冯 涛,郭 显,马建峰,李兴华. 可证明安全的节点不相交多路径源路由协议[J]. 计算机系统应用, 2010, 19(7): 1717-1731
作者姓名:冯 涛  郭 显  马建峰  李兴华
作者单位:兰州理工大学 计算机与通信学院,甘肃 兰州 730050;兰州理工大学 计算机与通信学院,甘肃 兰州 730050;西安电子科技大学 计算机网络与信息安全教育部重点实验室,陕西 西安 710071;西安电子科技大学 计算机网络与信息安全教育部重点实验室,陕西 西安 710071
基金项目:Supported by the National Natural Science Foundation of China under Grant Nos.60573036, 60972078, 60702059 (国家自然科学基金); the National High-Tech Research and Development Plan of China under Grant No.2007AA01Z429 (国家高技术研究发展计划(863)); the Gansu Provincial Natural Science Foundation of China under Grant No.2007GS04823 (甘肃省自然科学基金); the Ph.D. Programs Foundation of Lanzhou University of Technology of China under Grant No.BS14200901 (兰州理工大学博士基金)
摘    要:多路径路由实现是移动ad hoc网络可靠运行的有效保证.针对多路径路由协议的安全性分析,建立了基于UC(universally composable)框架的可证明安全路由协议的新方法.基于攻陷的网络拓扑模型,扩展了可模糊路由概念,提出了多路径可模糊路由集合概念,用于描述攻陷网络拓扑结构的移动ad hoc网络多路径路由;基于UC安全模型,提出了基于UC-RP(universally composable security framework for ad hoc networks routing protocol)框架的路由协议形式化安全定义;针对MNDP(multiple node-disjoint paths)协议存在的安全问题,提出了新的移动ad hoc网络节点不相交多路径动态源路由协议(简记为SMNDP(security multiple node-disjoint paths)协议).将基于UC-RP框架的可证明安全路由协议的新方法应用于SMNDP协议的安全分析.SMNDP协议的可证明安全性可以归约为消息认证码和签名机制的安全性.SMNDP协议实现了路由发现协议的正确性、节点身份的认证性和路由消息的完整性.

关 键 词:ad hoc网络  MNDP(multiple node-disjoint paths)  可证明安全  可模糊路由  SMNDP(security multiple node-disjoint paths)

Provably Secure Approach for Multiple Node-Disjoint Paths Source Routing Protocol
FENG Tao,GUO Xian,MA Jian-Feng and LI Xing-Hua. Provably Secure Approach for Multiple Node-Disjoint Paths Source Routing Protocol[J]. Computer Systems& Applications, 2010, 19(7): 1717-1731
Authors:FENG Tao  GUO Xian  MA Jian-Feng  LI Xing-Hua
Abstract:The multi-path routing scheme provides reliable guarantee for mobile ad hoc networks. This paper proposes a new method used to analyze the security of multi-path routing protocol within the framework of Universally Composable (UC) security. Based on the topological model that exist in adversarial nodes, the concept of plausible route is extended and the definition of plausible-route set is presented. Plausible-Route set is used to describe the multi-path routing for ad hoc networks, and a formal security definition based on UC-RP is given. A provably Security Multiple Node-Disjoint Paths source routing (SMNDP) is proposed and used to address secure fault issue of MNDP (multiple node-disjoint paths) in the active adversary model. The new approach shows that the security of SMNDP can be reduced to the security of the message authentication code and the digital signature. SMNDP implements the correctness of route discovery process, the authentication of nodes identifier and the integrality of route information.
Keywords:ad hoc network   MNDP (multiple node-disjoint paths)   provably security   plausible route   SMNDP (security multiple node-disjoint paths)
点击此处可从《计算机系统应用》浏览原始摘要信息
点击此处可从《计算机系统应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号