《计算机应用》唯一官方网站 ›› 2024, Vol. 44 ›› Issue (1): 252-260.DOI: 10.11772/j.issn.1001-9081.2023010068

• 网络空间安全 • 上一篇    

基于区块链的车载自组网车与基础设施快速切换认证方案

宁娟桂, 董国芳()   

  1. 云南民族大学 电气信息工程学院,昆明 650500
  • 收稿日期:2023-01-03 修回日期:2023-05-16 接受日期:2023-05-16 发布日期:2023-06-06 出版日期:2024-01-10
  • 通讯作者: 董国芳
  • 作者简介:宁娟桂(1997—),女,广西钦州人,硕士研究生,主要研究方向:安全认证协议、隐私保护;
    第一联系人:董国芳(1979—),女,云南德宏人,副教授,博士,CCF会员,主要研究方向:安全协议、物联网安全。
  • 基金资助:
    国家自然科学基金资助项目(61662089)

Blockchain-based vehicle-to-infrastructure fast handover authentication scheme in VANET

Juangui NING, Guofang DONG()   

  1. School of Electrical and Information Engineering,Yunnan Minzu University,Kunming Yunnan 650500,China
  • Received:2023-01-03 Revised:2023-05-16 Accepted:2023-05-16 Online:2023-06-06 Published:2024-01-10
  • Contact: Guofang DONG
  • About author:NING Juangui, born in 1997, M. S. candidate. Her research interests include secure authentication protocol, privacy protection.
  • Supported by:
    National Natural Science Foundation of China(61662089)

摘要:

针对车载自组网(VANET)中车辆通信面临的安全风险挑战以及车辆进入新的基础设施覆盖范围时需要进行复杂的身份重新认证问题,提出基于区块链的车载自组网V2I(Vehicle-to-Infrastructure)快速切换认证方案。该方案利用区块链去中心化、分布式和防篡改的特性,实现车辆认证信息的存储与查询;使用令牌机制,减少区块链查询次数,简化路边单元(RSU)切换认证阶段的认证过程,在后续的认证过程中只需检查令牌的有效性,实现了RSU的快速切换认证;采用了批量认证方法,能有效减少认证过程中的计算开销,提高消息认证效率;另外,可以实现对恶意车辆的追溯与撤销,并及时更新车辆的匿名身份,保证车辆的匿名性。相较于匿名批量认证方案、全聚合认证方案、无证书聚合签名方案、基于区块链的认证方案,所提方案在消息认证耗时上缩短了约51.1%、77.45%、77.56%和76.01%。实验结果表明,该方案能够有效降低车载自组网中的计算开销和通信开销。

关键词: 车载自组网, 区块链, 快速切换, 匿名认证, 安全通信

Abstract:

Aiming at the problems of security risk in vehicle communication and complex identity re-authentication when vehicles enter new infrastructure coverage in Vehicular Ad hoc NETwork (VANET), a blockchain-based V2I (Vehicle-to-Infrastructure) fast handover authentication scheme in VANET was proposed. The decentralized, distributed and tamper-proof characteristics of blockchain were utilized to realize the storage and query of vehicle authentication information. Token mechanism was used to reduce the number of queries of blockchain, and simplify handover authentication process between Road Side Units (RSUs). Because only the validity of token needed to be checked in subsequent authentication, rapid handover authentication of RSU was realized. Batch authentication was adopted to reduce the computation overhead and improve the efficiency of message authentication. In addition, the traceability and revocation of malicious vehicles was realized, and the anonymous identities of vehicles were updated in time to ensure the anonymity of vehicles. Compared with anonymous batch authentication scheme, authentication scheme with full aggregation, certificateless aggregate signature scheme, blockchain-based authentication scheme, the proposed scheme reduced the time consumption for message authentication by 51.1%, 77.45%, 77.56% and 76.01%. The experimental results show that proposed scheme can effectively reduce the computation overhead and communication overhead in VANET.

Key words: Vehicular Ad hoc NETwork (VANET), blockchain, rapid handover, anonymous authentication, secure communication

中图分类号: