Journal of Computer Applications ›› 2022, Vol. 42 ›› Issue (10): 3091-3101.DOI: 10.11772/j.issn.1001-9081.2021091630

Certificateless signature scheme with strong privacy protection for internet of vehicles

Dong ZHU1, Xinchun YIN1,2, Jianting NING3   

  1. 1.College of Information Engineering,Yangzhou University,Yangzhou Jiangsu 225127,China
    2.Guangling College,Yangzhou University,Yangzhou Jiangsu 225000,China
    3.College of Computer and Cyberspace Security,Fujian Normal University,Fuzhou Fujian 350117,China
  • Received:2021-09-16 Revised:2021-12-24 Accepted:2022-01-13 Online:2022-04-15 Published:2022-10-10
  • About author:ZHU Dong,born in 1996, M. S. candidate. His research interests include certificateless signature, communication security of internet of vehicles.
    YIN Xinchun,born in 1962, Ph. D. , professor. His research interests include cryptography, software quality assurance, high performance computing.
    NING Jianting,born in 1988, Ph. D. , professor. His research interests include applied cryptography,information security.
To guarantee the communication security of Internet of Vehicles (IoV) and reduce the overhead caused by updating vehicles private key frequently, firstly, the existing certificateless aggregate signature schemes were proved vulnerable to public key replacement attacks and malevolent Key Generation Center (KGC) attack at the same time. Secondly, a certificateless aggregate signature scheme with strong privacy protection and suitable for IoV was proposed. In the proposed scheme, by introducing pseudonymous identities, vehicles’ identities were hidden and trusted authority was capable of tracing malicious vehicles after the events. Meanwhile, vehicles’ pseudonymous identities and public keys were able to be updated dynamically with the change of the area in the proposed scheme. In this way, it was not only able to ensure the safety of vehicles’ trajectories, but also able to avoid the communication and storage overhead brought by frequent private key update effectively. Under the assumption of the Elliptic Curve Discrete Logarithm (ECDL) problem, security proof shows that the proposed scheme satisfies authentication and integrity under the random oracle model. Moreover, anonymity, traceability and strong privacy protection are also provided by the proposed scheme. At the same time, aggregate signature technology was used to realize the aggregated verification of vehicle signatures in the scheme, which reduced the computational cost of verifying the signature. Performance analysis shows that when the number of signatures contained in the aggregate signature is 100, the communication overhead of transmitting aggregated signatures by the proposed scheme is reduced by at least approximately 21.4% compared with the other related schemes.

Key words: Internet of Vehicles (IoV), certificateless signature, strong privacy protection, aggregate signature, random oracle model



关键词: 车联网, 无证书签名, 强隐私保护, 聚合签名, 随机预言模型

