Ad hoc网络中认证路由协议的改进及其安全性分析

Security Analysis of Extensible Authenticated Routing for Ad hoc Networks

  • 摘要: 提出了Ad hoc网络中的ARAN协议存在合谋和重放两种攻击。为了克服ARAN协议中的上述缺陷,给出了一个改进协议eARAN。改进协议在原有协议的基础上,在路由请求数据包中添加了发送该数据包的所有中间节点的身份,即路由路径,而目的节点要对最终得到的完整的路由路径进行签名,并将其作为路由响应数据包的一部分发回给发起节点,以此保证路由路径的正确性和完整性。最后,使用扩展后的串空间理论分析了改进协议eARAN的安全性,分析结果显示,eARAN协议是安全的。

     

    Abstract: First, conspiracy and replay attacks of authenticated routing for Ad hoc networks (ARAN) have been found in the paper. In order to overcome the above defects of ARAN, an improved protocol is proposed, by appending the identity of the intermediate nodes which broadcast the route discovery packet,that is, routing path. The routing path is signed with the destination node's private key and appended to reply packet. Then, the destination node unicasts reply packet back along the reverse path to the source. The correctness and integrity of the routing path are therefore guaranteed. Finally, the security of eARAN is analyzed by the extended strand spaces, and the analysis proves the correctness of the protocol.

     

/

返回文章
返回