《计算机应用》唯一官方网站 ›› 2026, Vol. 46 ›› Issue (9): 2857-2866.DOI: 10.11772/j.issn.1001-9081.2025080988
• 网络空间安全 • 上一篇
王云龙1,2,3, 刘亚丽1,2,3(
), 陈东东1,2,3, 周毅1,2,3, 庞小辉1,2,3
收稿日期:2025-08-28
修回日期:2025-10-30
接受日期:2025-11-07
发布日期:2025-11-17
出版日期:2026-09-10
通讯作者:
刘亚丽
作者简介:王云龙(2000—),男,江苏徐州人,硕士研究生,主要研究方向:车联网认证、物联网安全基金资助:
Yunlong WANG1,2,3, Yali LIU1,2,3(
), Dongdong CHEN1,2,3, Yi ZHOU1,2,3, Xiaohui PANG1,2,3
Received:2025-08-28
Revised:2025-10-30
Accepted:2025-11-07
Online:2025-11-17
Published:2026-09-10
Contact:
Yali LIU
About author:WANG Yunlong, born in 2000, M. S. candidate. His research interests include vehicular ad-hoc network authentication, internet of things security.Supported by:摘要:
针对车联网(VANET)跨域认证中无法区分车辆类型、认证效率低和安全性不足等问题,提出一种支持车辆类型验证的车联网跨域切换认证方案(CHAS-VTV)。针对密钥托管和证书管理复杂以及跨域认证效率低的问题,提出一种基于无证书公钥密码体系的无证书跨域认证机制;针对车辆分类型跨域认证的问题,设计一种基于动态累加器的车辆类型存储和验证机制;针对车辆与多个路边单元(RSU)重复认证的问题,设计一种基于哈希的消息验证码(HMAC)的切换认证机制,实现车辆与多个RSU的高效切换认证和密钥协商。性能分析结果表明,与现有的VANET跨域切换认证方案相比,CHAS-VTV在跨域认证中的计算开销至少降低了3.87%,通信开销至少降低了14.28%;在切换认证中的计算开销至少降低了18.09%,通信开销至少降低了14.48%。安全性分析结果表明,CHAS-VTV能有效抵抗公钥替换攻击、私钥泄露攻击、伪造攻击等多种恶意攻击。
中图分类号:
王云龙, 刘亚丽, 陈东东, 周毅, 庞小辉. 支持车辆类型验证的车联网跨域切换认证方案[J]. 计算机应用, 2026, 46(9): 2857-2866.
Yunlong WANG, Yali LIU, Dongdong CHEN, Yi ZHOU, Xiaohui PANG. Cross-domain handover authentication scheme for VANETs with vehicle type verification[J]. Journal of Computer Applications, 2026, 46(9): 2857-2866.
| 参数 | 含义 |
|---|---|
| 加法循环群 | |
| P | 循环群生成元 |
| q | 循环群的阶 |
| 第i个RTA的公私钥对 | |
| 第n域中第i个RSU的公私钥 | |
| 车辆公私钥对 | |
| 车辆假名,车辆真实身份 | |
| 非对称加解密 | |
| 哈希(SHA-256) | |
| TK | 切换认证密钥 |
| 基于哈希的消息验证码 | |
| 第a个域中第i个车辆的类型 | |
| 动态累加器的累加值 | |
| 时间戳 | |
| AS | 车辆切换认证凭证 |
| 车辆临时假名 |
表1 CHAS-VTV中的符号及含义
Tab. 1 Symbols and their meanings in CHAS-VTV
| 参数 | 含义 |
|---|---|
| 加法循环群 | |
| P | 循环群生成元 |
| q | 循环群的阶 |
| 第i个RTA的公私钥对 | |
| 第n域中第i个RSU的公私钥 | |
| 车辆公私钥对 | |
| 车辆假名,车辆真实身份 | |
| 非对称加解密 | |
| 哈希(SHA-256) | |
| TK | 切换认证密钥 |
| 基于哈希的消息验证码 | |
| 第a个域中第i个车辆的类型 | |
| 动态累加器的累加值 | |
| 时间戳 | |
| AS | 车辆切换认证凭证 |
| 车辆临时假名 |
| 含义 | 标识 | 执行时间/ms |
|---|---|---|
| 哈希 | Th | 0.000 6 |
| 椭圆曲线标量乘 | Tem | 0.171 5 |
| 椭圆曲线点加 | Tep | 0.001 5 |
| 双线性配对标量乘 | Tbpm | 0.524 5 |
| 双线性配对标量加 | Tbpa | 0.001 6 |
| 双线性配对 | Tbp | 5.421 5 |
| 模幂运算 | Tme | 3.114 2 |
| 非对称加密 | Te | 0.597 0 |
| 非对称解密 | Td | 0.323 0 |
表2 相关密码学操作的执行时间
Tab. 2 Execution time of related cryptographic operations
| 含义 | 标识 | 执行时间/ms |
|---|---|---|
| 哈希 | Th | 0.000 6 |
| 椭圆曲线标量乘 | Tem | 0.171 5 |
| 椭圆曲线点加 | Tep | 0.001 5 |
| 双线性配对标量乘 | Tbpm | 0.524 5 |
| 双线性配对标量加 | Tbpa | 0.001 6 |
| 双线性配对 | Tbp | 5.421 5 |
| 模幂运算 | Tme | 3.114 2 |
| 非对称加密 | Te | 0.597 0 |
| 非对称解密 | Td | 0.323 0 |
| 方案 | 跨域认证阶段 | 切换认证阶段 | ||
|---|---|---|---|---|
| 操作 | 时间/ms | 操作 | 时间/ms | |
| 文献[ | 9Th+8Tme | 24.919 3 | 5Th+3Tme | 9.345 6 |
| 文献[ | 17Th+9Tem+2Tme | 19.552 9 | 16Th+6Tem+2Tme | 6.247 0 |
| 文献[ | 11Tem+2Tbp+2Tbpa+3Tme | 27.963 7 | — | — |
| 文献[ | 6Tem+12Th | 1.036 2 | 12Tem+22Th | 2.070 6 |
| 文献[ | 17Tem+13Th+4Td+Te | 2.171 5 | 9Tem+11Th | 1.543 5 |
| 文献[ | 1Tem+Tbp+2Th+Td | 6.191 2 | Tem+Th+4Td+Te | 2.061 1 |
| CHAS-VTV | 11Tem+4Th+Tme+Td+Te | 5.923 1 | 2Tem+2Th+Te+Td | 1.264 2 |
表3 不同方案在跨域认证和切换认证阶段的计算开销对比
Tab. 3 Computational cost comparison of different schemes during cross-domain authentication and handover authentication phases
| 方案 | 跨域认证阶段 | 切换认证阶段 | ||
|---|---|---|---|---|
| 操作 | 时间/ms | 操作 | 时间/ms | |
| 文献[ | 9Th+8Tme | 24.919 3 | 5Th+3Tme | 9.345 6 |
| 文献[ | 17Th+9Tem+2Tme | 19.552 9 | 16Th+6Tem+2Tme | 6.247 0 |
| 文献[ | 11Tem+2Tbp+2Tbpa+3Tme | 27.963 7 | — | — |
| 文献[ | 6Tem+12Th | 1.036 2 | 12Tem+22Th | 2.070 6 |
| 文献[ | 17Tem+13Th+4Td+Te | 2.171 5 | 9Tem+11Th | 1.543 5 |
| 文献[ | 1Tem+Tbp+2Th+Td | 6.191 2 | Tem+Th+4Td+Te | 2.061 1 |
| CHAS-VTV | 11Tem+4Th+Tme+Td+Te | 5.923 1 | 2Tem+2Th+Te+Td | 1.264 2 |
图6 不同方案在RSU部署密度变化时认证阶段的计算开销对比
Fig. 6 Computational cost comparison of different schemes during authentication phase with varying deployment densities of RSUs
| 方案 | 不同阶段的通信开销/bit | |
|---|---|---|
| 跨域认证 | 切换认证 | |
| 文献[ | 3 392 | 3 216 |
| 文献[ | 1 728 | 3 328 |
| 文献[ | 3 872 | — |
| 文献[ | 2 144 | 3 616 |
| 文献[ | 1 568 | 3 392 |
| 文献[ | 1 824 | 2 856 |
| CHAS-VTV | 1 344 | 2 528 |
表4 不同方案在跨域认证和切换认证阶段的通信开销对比
Tab. 4 Communication cost comparison of different schemes during cross-domain authentication and handover authentication phases
| 方案 | 不同阶段的通信开销/bit | |
|---|---|---|
| 跨域认证 | 切换认证 | |
| 文献[ | 3 392 | 3 216 |
| 文献[ | 1 728 | 3 328 |
| 文献[ | 3 872 | — |
| 文献[ | 2 144 | 3 616 |
| 文献[ | 1 568 | 3 392 |
| 文献[ | 1 824 | 2 856 |
| CHAS-VTV | 1 344 | 2 528 |
| 方案 | 不同部署位置的存储开销/bit | |
|---|---|---|
| 车辆 | RSU | |
| 文献[ | 2 024 | 1 012 |
| 文献[ | 1 280 | 1 568 |
| 文献[ | 768 | 1 984 |
| 文献[ | 1 504 | 736 |
| 文献[ | 1 664 | 864 |
| 文献[ | 1 472 | 896 |
| CHAS-VTV | 1 792 | 928 |
表5 不同方案在车辆端和RSU端的存储开销对比
Tab. 5 Storage cost comparison of different schemes on vehicle and RSU sides
| 方案 | 不同部署位置的存储开销/bit | |
|---|---|---|
| 车辆 | RSU | |
| 文献[ | 2 024 | 1 012 |
| 文献[ | 1 280 | 1 568 |
| 文献[ | 768 | 1 984 |
| 文献[ | 1 504 | 736 |
| 文献[ | 1 664 | 864 |
| 文献[ | 1 472 | 896 |
| CHAS-VTV | 1 792 | 928 |
| [1] | Yang X, Li S, Yang L, et al. Efficient and security-enhanced certificateless aggregate signature-based authentication scheme with conditional privacy preservation for VANETs [J]. IEEE Transactions on Intelligent Transportation Systems, 2024, 25(9): 12256-12268. |
| [2] | Khezri E, Hassanzadeh H, Yahya R O, et al. Security challenges in Internet of Vehicles (IoV) for ITS: a survey [J]. Tsinghua Science and Technology, 2025, 30(4): 1700-1723. |
| [3] | Imam A Y, Li F. Efficient lightweight anonymous authentication scheme with certificateless aggregation for VANETs [J]. Journal of Information Security and Applications, 2025, 91: No.104053. |
| [4] | Khalafalla W, Zhu W X, Elkhalil A. Efficient authentication scheme for heterogeneous signcryption with cryptographic reverse firewalls for VANETs [J]. International Journal of Information Security, 2025, 24(3): No.105. |
| [5] | Manasrah A, Yaseen Q, Al-Aqrabi H, et al. Identity-based authentication in VANETs: a review [J]. IEEE Transactions on Intelligent Transportation Systems, 2025, 26(4): 4260-4282. |
| [6] | Li G, Luan T H, Lai C, et al. DTHA: a digital twin-assisted handover authentication scheme for 5G and beyond [J]. IEEE Transactions on Dependable and Secure Computing, 2025, 22(6): 6422-6440. |
| [7] | Chen Y, Zhang J, Wei X, et al. Cross-domain authentication scheme for vehicles based on given virtual identities [J]. IEEE Internet of Things Journal, 2024, 11(9): 15869-15879. |
| [8] | Awais S M, Wu Y, Mahmood K, et al. Provably secure fog-based authentication protocol for VANETs [J]. Computer Networks, 2024, 246: No.110391. |
| [9] | Slimene M, Chriki A, Mitton N, et al. A comparative survey of authentication schemes suitable for the audit of V2X communications[J]. IEEE Transactions on Intelligent Transportation Systems, 2025, 26(11): 18304-18324. |
| [10] | Naskar S, Brunetta C, Zhang T, et al. Authentication framework with enhanced privacy and batch verifiable message sharing in VANETs [J]. IEEE Transactions on Vehicular Technology, 2025, 74(12): 18556-18571. |
| [11] | Yadav A K, Shojafar M, Braeken A. iVFAS: An improved vehicle-to-fog authentication system for secure and efficient fog-based road condition monitoring [J]. IEEE Transactions on Vehicular Technology, 2024, 73(9): 12570-12584. |
| [12] | Zhang J, Zhong H, Cui J, et al. CVAR: distributed and extensible cross-region vehicle authentication with reputation for VANETs [J]. IEEE Transactions on Intelligent Transportation Systems, 2024, 25(1): 74-89. |
| [13] | Shi D, Nie X, Xu M, et al. A secure and efficient lattice-based conditional privacy-preserving authentication protocol for the VANET [J]. Vehicular Communications, 2025, 55: No.100958. |
| [14] | Cheng G, Huang J, Wang Y, et al. Conditional privacy-preserving multi-domain authentication and pseudonym management for 6G-enabled IoV [J]. IEEE Transactions on Information Forensics and Security, 2024, 19: 10206-10220. |
| [15] | Vangujar A K, Umrani A, Palmieri P. Identity-based Cluster Authentication and Key Exchange (ID-CAKE) message broadcasting and batch verification in VANETs [C]// ACNS 2024 Satellite Workshops, LNCS 14587 . Cham: Springer, 2024: 162-179. |
| [16] | Deshmukh S S. A new authentication model for vehicular ad hoc networks with optimisation strategy [J]. International Journal of Vehicle Autonomous Systems, 2025, 18(3): 211-233. |
| [17] | 夏卓群,苏潮,徐梓桑,等. 基于物理不可克隆函数的轻量级可证明安全车联网认证协议[J]. 电子与信息学报, 2024, 46(9): 3788-3796. |
| Xia Zhuoqun, Su Chao, Xu Zisang, et al. A lightweight and provably secure authentication protocol for internet of vehicles using physical unclonable function [J]. Journal of Electronics and Information Technology, 2024, 46(9): 3788-3796. | |
| [18] | 徐越端,陈建伟,朱恒亮. 基于无证书群签名的车联网条件隐私保护认证方案[J]. 计算机应用, 2025, 45(5): 1556-1563. |
| Xu Yueduan, Chen Jianwei, Zhu Hengliang. Conditional privacy-preserving authentication scheme based on certificateless group signature for VANET [J]. Journal of Computer Applications, 2025, 45(5): 1556-1563. | |
| [19] | 宁娟桂,董国芳. 基于区块链的车载自组网车与基础设施快速切换认证方案[J]. 计算机应用, 2024, 44(1): 252-260. |
| Ning Juangui, Dong Guofang. Blockchain-based vehicle-to-infrastructure fast handover authentication scheme in VANET [J]. Journal of Computer Applications, 2024, 44(1): 252-260. | |
| [20] | 冯霞,崔凯平,谢晴晴,等. VANET中基于区块链的分布式匿名认证方案[J]. 通信学报, 2022, 43(9): 134-147. |
| Feng Xia, Cui Kaiping, Xie Qingqing, et al. Distributed anonymous authentication scheme based on the blockchain in VANET [J]. Journal on Communications, 2022, 43(9): 134-147. | |
| [21] | 张应辉,李国腾,韩刚,等. 5G车联网中安全高效的组播服务认证与密钥协商方案[J]. 电子与信息学报, 2024, 46(7): 3026-3035. |
| Zhang Yinghui, Li Guoteng, Han Gang, et al. Secure and efficient authentication and key agreement scheme for multicast services in 5G vehicular to everything [J]. Journal of Electronics and Information Technology, 2024, 46(7): 3026-3035. | |
| [22] | 刘雪艳,王力,郇丽娟,等. 车联网环境下无证书匿名认证方案[J]. 电子与信息学报, 2022, 44(1): 295-304. |
| Liu Xueyan, Wang Li, Huan Lijuan, et al. Certificateless anonymous authentication scheme for internet of vehicles [J]. Journal of Electronics and Information Technology, 2022, 44(1): 295-304. | |
| [23] | Camenisch J, Lysyanskaya A. Dynamic accumulators and application to efficient revocation of anonymous credentials [C]// Advances in CRYPTO 2002, LNCS 2442. Berlin: Springer, 2002: 61-76. |
| [24] | Mohammed B A, Al-Shareeda M A, Manickam S, et al. FC-PA: fog computing-based pseudonym authentication scheme in 5G-enabled vehicular networks [J]. IEEE Access, 2023, 11: 18571-18581. |
| [25] | Said A M, Marot M, Ibrahim A W, et al. Modeling interactive real-time applications in VANETs with performance evaluation[J]. Computer Networks, 2016, 104: 66-78. |
| [26] | Wang C, Huang R, Shen J, et al. A novel lightweight authentication protocol for emergency vehicle avoidance in VANETs [J]. IEEE Internet of Things Journal, 2021, 8(18): 14248-14257. |
| [27] | Son S, Lee J, Park Y, et al. Design of blockchain-based lightweight V2I handover authentication protocol for VANETs [J]. IEEE Transactions on Network Science and Engineering, 2022, 9(3): 1346-1358. |
| [28] | Zhang Y, Li B, Wu J, et al. Efficient and privacy-preserving blockchain-based multifactor device authentication protocol for cross-domain IIoT [J]. IEEE Internet of Things Journal, 2022, 9(22): 22501-22515. |
| [29] | Dwivedi S K, Amin R, Vollala S, et al. B-HAS: blockchain-assisted efficient handover authentication and secure communication protocol in VANETs [J]. IEEE Transactions on Network Science and Engineering, 2023, 10(6): 3491-3504. |
| [30] | Bi Y, Jia C. Towards Resilience 5G-V2N: efficient and privacy-preserving authentication protocol for multi-service access and handover[J]. IEEE Transactions on Mobile Computing, 2025, 24(6): 5446-5463. |
| [31] | Su H, Dong S, Zhang T. A hybrid blockchain-based privacy-preserving authentication scheme for vehicular ad hoc networks[J]. IEEE Transactions on Vehicular Technology, 2024, 73(11): 17059-17072. |
| [1] | 龚镇辉, 史晓雨, 鲁云, 刘阳成, 尚明生. 面向敏感属性缺失的大语言模型公平推荐框架[J]. 《计算机应用》唯一官方网站, 2026, 46(9): 2838-2846. |
| [2] | 贾悠, 吴娅玲, 苗青鹏. 云环境下非人员实体的零信任身份认证方案[J]. 《计算机应用》唯一官方网站, 2026, 46(8): 2505-2514. |
| [3] | 孙天乐, 曹腾飞. 车联网中基于Stackelberg博弈的联邦学习质量感知激励机制[J]. 《计算机应用》唯一官方网站, 2026, 46(7): 2229-2238. |
| [4] | 高远, 陈学斌, 王柳, 马凯光. 基于双粒度隐私保护的分布式图发布方法[J]. 《计算机应用》唯一官方网站, 2026, 46(7): 2164-2173. |
| [5] | 王诗雨, 贾林鹏, 金键, 李忠诚, 周继华, 孙毅. 按需披露的区块链数字身份认证机制DCIdentity[J]. 《计算机应用》唯一官方网站, 2026, 46(4): 1171-1181. |
| [6] | 马凯光, 陈学斌, 菅银龙, 王柳, 高远. 基于混合序列模型与联邦类平衡算法的网络入侵检测[J]. 《计算机应用》唯一官方网站, 2026, 46(3): 857-866. |
| [7] | 何丽丽, 管新如, 张磊, 蒋胜, 蒋澄杰. 车联网位置隐私保护的全景与未来[J]. 《计算机应用》唯一官方网站, 2026, 46(3): 809-820. |
| [8] | 平欢, 夏战国, 刘思诚, 刘奇翰, 李春磊. 基于多层联邦学习的终端数据隐私保护方案[J]. 《计算机应用》唯一官方网站, 2026, 46(3): 830-838. |
| [9] | 王磊, 周文轩, 贾柠晖, 屈志昊. 面向隐私敏感物联网数据的联邦学习双向通信压缩[J]. 《计算机应用》唯一官方网站, 2026, 46(3): 887-898. |
| [10] | 樊娜, 罗闯, 张泽晖, 张梦瑶, 穆鼎. 基于改进生成对抗网络的车辆轨迹语义隐私保护机制[J]. 《计算机应用》唯一官方网站, 2026, 46(1): 169-180. |
| [11] | 翟社平, 朱鹏举, 杨锐, 刘佳一腾. 基于区块链的物联网身份管理系统[J]. 《计算机应用》唯一官方网站, 2025, 45(9): 2873-2881. |
| [12] | 张博瀚, 吕乐, 荆军昌, 刘栋. 基于遗传算法的属性网络社区隐藏方法[J]. 《计算机应用》唯一官方网站, 2025, 45(9): 2817-2826. |
| [13] | 苏锦涛, 葛丽娜, 肖礼广, 邹经, 王哲. 联邦学习中针对后门攻击的检测与防御方案[J]. 《计算机应用》唯一官方网站, 2025, 45(8): 2399-2408. |
| [14] | 葛丽娜, 王明禹, 田蕾. 联邦学习的高效性研究综述[J]. 《计算机应用》唯一官方网站, 2025, 45(8): 2387-2398. |
| [15] | 晏燕, 李飞飞, 吕雅琴, 冯涛. 安全高效的混洗差分隐私频率估计方法[J]. 《计算机应用》唯一官方网站, 2025, 45(8): 2600-2611. |
| 阅读次数 | ||||||
|
全文 |
|
|||||
|
摘要 |
|
|||||