摘要
针对ZigBee网络中的节点复制攻击,提出了一种基于邻居关系建立与保持机制的抗节点复制攻击方法,该方法使用单向杂凑函数将节点的ID、部署时间与其密钥信息进行绑定,使每个节点只能在部署后的特定时间内与周围节点建立邻居关系,由于复制节点不能更改部署时间且入网时已超过特定时间,与周围节点的邻居关系建立失败;同时,通过邻居关系保持机制及时发现并删除因被捕获而离开网络的邻居节点,以消除节点被捕获造成的危害,从而实现抵抗节点复制攻击。安全性分析及实验结果表明,方法在有效抵抗节点复制攻击的同时,具有较小的计算开销和存储需求。
Aiming at the node replication attacks in ZigBee network, an approach against them based on the establishment and maintenance mechanism of neighbor relationships was proposed. The approach bound the key material of node with its ID and deployment time via a one-way hash function so that each node could establish neighbor relationships with the surrounding nodes only in the specific time after deployment. Since replicas could not change the deployment time and the specific time was over, their establishments of neighbor relationships failed. Meanwhile, this approach found and deleted the leaving nodes due to being captured in networks through the maintenance mechanism of neighbor relationships, to eliminate the threats caused by node capture. Finally the resistance of node replication attacks was achieved. The security analysis and experiment results show that this approach can not only resist the node replication attacks effectively, but also need little computing and storage.
出处
《系统仿真学报》
CAS
CSCD
北大核心
2014年第5期1026-1031,共6页
Journal of System Simulation