欢迎访问《兵工学报》官方网站,今天是 分享到:

兵工学报 ›› 2012, Vol. 33 ›› Issue (6): 702-705.doi: 10.3969/j.issn.1000-1093.2012.06.011

• 论文 • 上一篇    下一篇

一种基于树结构的分布式组密钥协商协议

刘天华, 朱宏峰   

  1. (沈阳师范大学 软件学院, 辽宁 沈阳 110034)
  • 收稿日期:2011-04-06 修回日期:2011-04-06 上线日期:2014-03-04
  • 作者简介:刘天华(1966—),男,教授
  • 基金资助:
    辽宁省自然科学基金项目(20110220120102202);辽宁省教育厅高等学校科研项目(2009A665);辽宁省百千万人才工程资助项目(2011921046)

An Improved Tree-based Distributed Group Key Agreement Protocol

LIU Tian-hua, ZHU Hong-feng   

  1. (Software College, Shenyang Normal University, Shenyang 110034, Liaoning, China)
  • Received:2011-04-06 Revised:2011-04-06 Online:2014-03-04

摘要: 提出了一种基于带有认证功能的组密钥协商(BD)协议和树结构的分布式组密钥协商(T-BD)协议。协议将加入认证功能的BD协议与逻辑密钥树相结合,尽管在协商开始时增加了一定数量的通信和计算开销,但协议能够保证内部节点的诚实性,抵抗了来自内部节点的主动攻击。由于协议具有认证功能,能够检测出协议内部发动攻击的恶意节点,而且减小了成员关系变动时的通信量和计算量,能够高效地处理成员加入和退出。由于原有协议的认证功能,使得内部恶意节点不能实施主动攻击。经计算协议在通信轮效率和模指数运算方面都较原协议有明显减少,可扩展性非常高,适合于目前流行的P2P应用的组密钥协商。

关键词: 通信技术, 计算机系统结构, 安全组通信, 组密钥协商, 组密钥协商协议, 逻辑密钥树

Abstract: A distributed group key agreement protocol based on authenticated-BD and logical tree, namely T-BD, was proposed. Although the communication and computation costs are increased at the beginning of the proposed protocol, the protocol can guarantee honesties of participants and prevent attacks from internal malicious members. Since the protocol has authentication ability, it can detect the internal malicious attackers. And, the communication and computation costs decrease when new members join and leave, dealing with members’ joining and quitting efficiently. As the protocol is constructed on top of authenticated-BD, the internal malicious members can not attack initiatively. Compared with the existing protocols, the proposed protocol has low communication cost and efficient modular exponentiation and is more scalable for distributed P2P application.

中图分类号: