Distributed Authentication and Key Agreement Protocol for Ad hoc network

Ad hoc networks have developed rapidly due to its self-organization and stability, but its openness and mobility brings some problems in security. We present a trusted-computing based distributed virtual security zone (TC-DVSZ) model to ensure the security in ad hoc network with less computation and bandwidth. In the model, distributed authority (DA) has been introduced into the network to act as a CA in each cluster. To keep the DA trusted and reliable, we propose a trust based DA decision arithmetic. At the same time, we use ECC instead of RSA, and provide two level key agreement scheme, that decreases the cost of computation and increases the adaptability to various nodes with different computation capability. Finally, we prove that TC-DVSZ model is much more suitable for ad hoc network, because the model reduces the requirements for bandwidth, computation capacity and storage.