当前位置: X-MOL 学术Veh. Commun. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Accountable credential management system for vehicular communication
Vehicular Communications ( IF 6.7 ) Pub Date : 2020-07-01 , DOI: 10.1016/j.vehcom.2020.100279
Salabat Khan , Liehuang Zhu , Xiaoyan Yu , Zijian Zhang , Mussadiq Abdul Rahim , Maqbool Khan , Xiaojiang Du , Mohsen Guizani

Social Internet of Vehicles (SIoV) is becoming a reality where private and secure communication is a prerequisite. Various standardization organizations and studies have reached a consensus to use Vehicular Public-key Infrastructure (V-PKI) in order to secure SIoV systems. However, significant security- and trust-related problems remain unsolved. This study presents an Accountable Credential Management System (ACMS) for vehicular communication to solve these problems. ACMS builds on transparency log (Distributed ledger technology) schemes for web PKI but addresses the challenges specific to vehicular communication. ACMS transparently handles certificate-related use cases, namely, certificate provision, registration, validation, and revocation. It also enhances the security of vehicular communication through constant monitoring; hence, assuring that no pseudonym certificate is accepted by vehicles before being logged and witnessed. With an efficient data structure known as the Accumulation Tree (AT), we extend the conventional transparency log to provide a cost-effective and trustworthy authentication process without relying on certificate revocation lists. Time cost and performance analyses show that the proposed approach is feasible and scalable than existing V-PKI schemes. Moreover, using Tamarin Prover, it is verified that our proposed technique provides defense against an active adversary.



中文翻译:

负责车辆通讯的凭证管理系统

车用社交互联网(SIoV)成为现实,而私密和安全的通信是前提。为了保护SIoV系统,各种标准化组织和研究已达成共识,以使用车载公共密钥基础结构(V-PKI)。但是,与安全和信任相关的重大问题仍未解决。这项研究提出了一种用于车辆通讯的责任证书管理系统(ACMS),以解决这些问题。ACMS建立在用于Web PKI的透明日志(分布式分类帐技术)方案的基础上,但解决了车辆通信特有的挑战。ACMS透明地处理与证书相关的用例,即证书提供,注册,验证和吊销。通过不断监控,还可以提高车辆通讯的安全性;因此,确保在记录和见证之前,车辆不接受任何假名证书。利用称为累积树(AT)的高效数据结构,我们扩展了常规的透明日志,以提供经济高效且可信赖的身份验证过程,而无需依赖证书吊销列表。时间成本和性能分析表明,与现有的V-PKI方案相比,该方法可行且可扩展。此外,使用Tamarin Prover,可以证明我们提出的技术可以防御主动的对手。我们扩展了常规的透明日志,以提供一种经济高效且值得信赖的身份验证过程,而无需依赖证书吊销列表。时间成本和性能分析表明,与现有的V-PKI方案相比,该方法可行且可扩展。此外,使用Tamarin Prover,可以证明我们提出的技术可以防御主动的对手。我们扩展了常规的透明日志,以提供一种经济高效且值得信赖的身份验证过程,而无需依赖证书吊销列表。时间成本和性能分析表明,与现有的V-PKI方案相比,该方法可行且可扩展。此外,使用Tamarin Prover,可以证明我们提出的技术可以防御主动的对手。

更新日期:2020-07-01
down
wechat
bug