计算机应用 ›› 2014, Vol. 34 ›› Issue (2): 456-460.

• 计算机安全 • 上一篇    下一篇

低成本有源RFID双向认证加密方案

叶翔,徐展,胡翔,刘丹   

  1. 电子科技大学 电子科学技术研究院, 成都 611731
  • 收稿日期:2013-07-04 修回日期:2013-09-03 出版日期:2014-02-01 发布日期:2014-03-01
  • 通讯作者: 叶翔
  • 作者简介:叶翔(1987-),男,江苏淮安人,硕士研究生,主要研究方向:物联网安全;徐展(1970-),男,四川泸州人, 高级工程师,主要研究方向:嵌入式系统、物联网安全;胡翔(1988-),男,江西九江人,硕士研究生,主要研究方向:物联网安全;刘丹(1969-),男,四川成都人,副教授,博士,主要研究方向:网络安全、信息系统安全、物联网安全。
  • 基金资助:
    成都市高校院所应用基础与成果转化项目

Low-cost mutual authenticate and encrypt scheme for active RIFD system

YE Xiang,XU Zhan,HU Xiang,LIU Dan   

  1. Research Institute Electronic Science and Technology, University of Electronic Science and Technology of China, Chengdu Sichuan 611731, China
  • Received:2013-07-04 Revised:2013-09-03 Online:2014-02-01 Published:2014-03-01
  • Contact: YE Xiang

摘要: 针对射频识别(RFID)系统自身在认证和通信过程中存在的安全隐患问题,提出了一种低成本、高效、安全的RFID节点间身份认证与数据加密方案。该方案采用改进的椭圆曲线Diffie-Hellman(ECDH)算法与高级加密标准(AES)相结合的方式实现密钥分发、身份认证、通信加密功能,同时采用动态密钥算法增强了通信过程中的安全性。此外,该方案在不破坏安全强度的情况下缩减了运算规模,减少了系统资源开销。验证表明,该方案资源开销低,能够抵抗重放、假冒、中间人、拒绝服务等攻击,在对安全性能及低成本有一定要求的物联网领域具有一定的实用意义。

关键词: 射频识别, 椭圆曲线数字签名算法, 高级加密标准, 低成本, 双向认证, 动态密钥

Abstract: In order to solve the safety problems of privacy in the processes of authentication and communication of Radio Frequency IDentification (RFID) system, a mutual authenticate and encrypt scheme with low resource consume, high-level security and applicable for most of RFID systems was designed. This scheme combined the improved Elliptic Curve Diffie-Hellman (ECDH) algorithm and Advanced Encryption Standard (AES) algorithm to implement functions of key distribution, certification and communication encryption. It used dynamic key to enhance security. In addition, this scheme reduced the operation scale with original security strength, and saved the overhead of system resources. The measured results show that this scheme can resist replaying attacks, impersonation attacks, man-in-the-middle attacks and Denial of Service (DoS) attacks so as to save system resources. It can be applied in the field of Internet of Things (IOT) which has requirements on security and costs.

Key words: Radio Frequency IDentification (RFID), Elliptic Curve Digital Signature Algorithm (ECDSA), Advanced Encryption Standard (AES), low cost, mutual authenticate, dynamic key

中图分类号: