An anonymous distributed key management system based on CL-PKC for space information network

The space information network (SIN) has attracted more and more attention due to its extensive applicability and great expanding access services. The complicated properties of SIN, such as the dynamic and unstable topology, the highly exposed links and so on, make it necessary to design an appropriate key management scheme to ensure the security of communication. In this paper we propose an anonymous and distributed certificate-less key management scheme (aCL-KMS) for SIN. It mainly adopts the strategy of the distributed key generation, update and agreement instead of the complex centralized key management. Based on the certificate-less public key cryptosystem (CL-PKC), this scheme not only avoids the high cost of complicated certificate management, but also overcome the key-escrow problem of the certificate-based or identity-based public key cryptosystem. Also, due to the fact that the anonymous authentication mechanism adopts the temporary identification of members, this scheme can efficiently protect the members' privacy and ensure the confidentiality of communications. The security properties discussion and the computational overhead analysis show that the proposed key management system is secure enough to meet the security requirements of SIN, and it is of less computing cost at the same time.

[1]  Li Ling,et al.  General and Efficient Certificateless Public Key Encryption Constructions , 2007, Pairing.

[2]  Pla Information Strongly Secure Certificateless Signature Scheme without Pairings , 2010 .

[3]  Xiaojiang Du,et al.  A light-weight certificate-less public key cryptography scheme based on ECC , 2014, 2014 23rd International Conference on Computer Communication and Networks (ICCCN).

[4]  Matthew K. Franklin,et al.  Identity-Based Encryption from the Weil Pairing , 2001, CRYPTO.

[5]  G. Pujolle,et al.  EC-AKA2 a revolutionary AKA protocol , 2013, 2013 International Conference on Computer Applications Technology (ICCAT).

[6]  Haitham Cruickshank,et al.  A security system for satellite networks , 1996 .

[7]  Young-Ran Lee,et al.  An Authenticated Certificateless Public Key Encryption Scheme , 2004, IACR Cryptol. ePrint Arch..

[8]  Joonsang Baek,et al.  Certificateless Public Key Encryption Without Pairing , 2005, ISC.

[9]  Lei Zhang,et al.  A New Provably Secure Certificateless Signature Scheme , 2008, 2008 IEEE International Conference on Communications.

[10]  Ma Jianfeng,et al.  A highly secure identity-based authenticated key-exchange protocol for satellite communication , 2010, Journal of Communications and Networks.

[11]  Kenneth G. Paterson,et al.  Certificateless Public Key Cryptography , 2003 .

[12]  Hsiao-Hwa Chen,et al.  Security in space information networks , 2015, IEEE Commun. Mag..

[13]  Jayaprakash Kar,et al.  Certificateless Public Key Cryptography: A Research Survey , 2016 .