计算机与现代化

• 数据库与数据挖掘 • 上一篇    下一篇

一种基于等级树模型的群组密钥管理方案

  

  1. (西安通信学院信息安全系,陕西西安710106)
  • 收稿日期:2014-04-29 出版日期:2014-08-15 发布日期:2014-08-19
  • 作者简介:高宝阳(1983-),男,陕西宝鸡人,西安通信学院信息安全系硕士研究生,研究方向:网络安全; 潘进(1959-),男,广 东广州人,教授,硕士生导师,研究方向:网络安全; 康连瑞(1963-),男,河北冀州人,副教授,研究方向:信号处理。

A Group Key Management Scheme Based on Grade-tree Model

  1. (Department of Information Security, Xi’an Communications Institute, Xi’an 710106, China)
  • Received:2014-04-29 Online:2014-08-15 Published:2014-08-19

摘要:

安全、高效的群组密钥管理方案是保证群组通信安全的关键。在综合考虑军队保密通信和群组密钥管理的特点及要求的基础上,
提出一种基于等级树模型的群组密钥管理方案。根据军队隶属关系建立等级树模型,引入单向散列函数生成层间密钥以维护上下层访问
权限,对底层小组的密钥管理采用一种逻辑密钥层次(LKH,Logical Key Hierarchy)的改进算法。对该方案的性能分析结果表明该方
案在通信开销、密钥存储开销等方面优于其他同类方案。

关键词: 群组通信, 密钥管理, 等级, 逻辑密钥树

Abstract:

Secure and highly-efficient group key management is critical in secure group communication. A group key
management scheme based on grade-tree model was proposed according to the characteristic of military secret
communications and the need of group key management. The grade-tree model was established firstly according to
relationship of administrative subordination.Then keys among levels were generated by one-way hash function in
order to guarantee accessing popedom and a reformative LKH arithmetic was used to manage members in lowest
subgroups. The performance of scheme is analysed, the result indicates:this scheme is better than other congener
schemes in communications cost and key storage cost.

Key words: group communication, key management, grade, logical key hierarchy

中图分类号: