Author Login Chief Editor Login Reviewer Login Editor Login Remote Office

Computer Engineering ›› 2006, Vol. 32 ›› Issue (4): 155-157.

• Security Technology • Previous Articles     Next Articles

Distributed Certification Signature Algorithm Based on Agent in Mobile Ad Hoc Networks

SUN Lei, GE Lindong   

  1. School of Information Engineering, PLA University of Information Engineering, Zhengzhou 450002
  • Online:2006-02-20 Published:2006-02-20

移动自组网基于代理的分布式证书签名算法

孙 磊,葛临东   

  1. 解放军信息工程大学信息工程学院,郑州 450002

Abstract: The certification service must adopt distributed architecture in mobile Ad Hoc networks due to its characteristics such as no infrastructure, no center. Existing distributed authentication technology is one hop architecture based on (n,t) threshold secret sharing cryptography, in which a node can not work properly when the amount of its one hop neighbor is less than threshold value. Combined with Feldman verify scheme, DCS-BA(distributed certification signature based on agent)is proposed, which can solve the lack of neighbor node in the one hop distributed certification signature algorithm, on the other hand, it can verify the validity of private key share, protect the system private key from leaking. Simulation results demonstrate that DCS-BA is better than current distributed certification signature algorithm in certification signature success ratio and average time.

Key words: Mobile Ad Hoc network; Verified secret sharing; Distributed certification signature based on agent(DCS-BA)

摘要: 移动自组网无中心、无基础设施等特性决定了在这种网络中提供证书服务必须采用分布式的体系结构。现有的分布式认证技术是基于(n,t)门限方案的单层结构,当一个节点的单跳邻居节点数目小于系统门限值时就无法正常工作。该文结合Feldman 可验证秘密共享策略提出了一种新型基于代理的分布式证书签名算法,一方面可以解决单层分布式证书签名算法中邻居节点数目不足问题,另一方面可以在证书签名合成过程中验证私钥分量正确性,保护系统私钥不泄漏。仿真结果表明,DCS-BA 在证书签名成功率和证书平均签名时间方面明显好于普通的分布式证书签名算法。

关键词: 移动自组网;可验证秘密共享;基于代理的分布式证书签名