• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

计算机工程与科学 ›› 2024, Vol. 46 ›› Issue (01): 83-90.

• 计算机网络与信息安全 • 上一篇    下一篇

智能车载网络中匿名认证与密钥交换协议

张晓均,唐浩宇,付红,王文琛   

  1. (西南石油大学计算机科学学院,四川 成都 610500)
  • 收稿日期:2023-02-16 修回日期:2023-06-02 接受日期:2024-01-25 出版日期:2024-01-25 发布日期:2024-01-15
  • 基金资助:
    国家自然科学基金(61902327);中国博士后科学基金(2020M681316);成都市科技局项目(2021-YF05-00965-SN);西南石油大学高等教育教学改革研究项目(X2021JGZDI028)

Anonymous authentication and key exchange protocol in intelligent vehicle networks

ZHANG Xiao-jun,TANG Hao-yu,FU Hong,WANG Wen-chen   

  1. (School of Computer Science,Southwest Petroleum University,Chengdu 610500,China)
  • Received:2023-02-16 Revised:2023-06-02 Accepted:2024-01-25 Online:2024-01-25 Published:2024-01-15

摘要: 智能车载网络是实现智能交通系统的核心,近年来受到学术界越来越多的关注,但车载网络固有的开放性、脆弱性导致其面临许多安全问题。为解决智能车辆与附近RSU之间双向认证和会话密钥的交换以及智能车辆的身份匿名性问题,提出智能车载网络中匿名认证与密钥交换协议。协议中设计了基于身份的数字签名算法,使得智能车辆以身份完全匿名的方式向附近的路边基站单元发送认证信息。当路边基站单元通过认证之后,计算一个消息认证码作为响应信息发送给请求认证的智能车辆,以实现双向认证。此外,在匿名认证的同时还能进行会话密钥的协商,用于后续的安全保密通信。协议是基于身份密码系统设计的,不需要复杂的证书管理。性能评估表明,所提协议能够有效部署在智能车载应用场景。

关键词: 智能车载网络, 身份匿名, 密钥交换, 双向认证, 消息认证码

Abstract: Intelligent vehicular ad hoc networks (VANETs) are the core of intelligent transportation systems, in recent years, it has received increasing attentions from the academic community. However, due to the openness and fragility, VANETs are confronted with many security problems. In order to solve the problems such as two-way authentication between intelligent vehicles and nearby RSUs, exchange of session keys and anonymity of intelligent vehicles, this paper proposes an anonymous authentication and key exchange protocol in the intelligent vehicle networks. In the protocol, an identity-based digital signature algorithm is designed to enable the intelligent vehicle to send authentication information to the nearby road side unit (RSU) in a completely anonymous manner. After the RSU validates the authentication information, a message authentication code will be calculated and sent to the intelligent vehicle as the response to realize two-way authentication. In addition, during the anonymous authentication process, the session key can be negotiated for subsequent secure communication. The protocol is designed based on the identity cryptosystem, which does not need complex certificate management. The performance evaluation shows that this protocol can be effectively deployed in intelligent vehicle application scenarios with highly sensitive information.

Key words: intelligent vehicular ad hoc networks, identity anonymity, key exchange, two-way authentication, message authentication code