A High-Performance Distributed Certificate Revocation Scheme for Mobile Ad Hoc Networks

被引:1
|
作者
Guo, Chongxian [1 ]
Xu, Huaqiang [1 ]
Ju, Lei [1 ]
Jia, Zhiping [1 ]
Xu, Jihai [2 ]
机构
[1] Shandong Univ, Sch Comp Sci & Technol, Jinan, Peoples R China
[2] Xi An Jiao Tong Univ, Software Engn Sch, Xian, Peoples R China
关键词
mobile ad hoc networks (MANETs); certificate revocation; trust; accusation function; INTRUSION DETECTION; ATTACKS;
D O I
10.1109/TrustCom.2014.136
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Mobile ad hoc networks (MANETs) are wireless networks which have a wide range applications due to their dynamic topologies and easy to deployment. However, such networks are also more vulnerable to attacks compared with traditional wireless networks. Certificate revocation is an effective mechanism for providing network security services. Existing schemes are not well suited for MANETs because of incurring much overhead or bring low accuracy on certificate revocation. Therefore, we propose a high-performance distributed certificate revocation scheme in which certificates of malicious nodes will be revoked quickly and accurately. Certificate revocation is the result of the collaborative effect of multiple accusations. For diluting damages to networks, one accusation is enough to limit the accusation function of the accused node. To enhance the accuracy of certificate revocation, our scheme requires nodes just accepting those accusations in which trust levels of accuser nodes are not less than accused nodes'. To guarantee the rapidity, we restore accusation functions of the falsely accused nodes after revoking certificates of all malicious nodes who ever accused them. Moreover, we design one mechanism to reward nodes who ever accused those malicious nodes, and in return, accusations made by them will accelerate the certificate revocation processes of other malicious nodes. Simulation results demonstrate the effectiveness and efficiency of our scheme in certificate revocation. In addition, our scheme achieves a great improvement of just limiting accusation functions of malicious nodes.
引用
收藏
页码:156 / 163
页数:8
相关论文
共 50 条
  • [1] A distributed certificate revocation scheme for Ad Hoc networks
    Zhong, Huan
    Xu, Chun-Xiang
    Qin, Zhi-Guang
    [J]. Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China, 2007, 36 (03): : 496 - 499
  • [2] A localized certificate revocation scheme for mobile ad hoc networks
    Arboit, Genevieve
    Crepeau, Claude
    Davis, Carlton R.
    Maheswaran, Muthucumaru
    [J]. AD HOC NETWORKS, 2008, 6 (01) : 17 - 31
  • [3] A Lightweight Certificate Revocation Scheme for Hybrid Mobile ad Hoc Networks
    Xu, Huaqiang
    Wang, Rui
    Jia, Zhiping
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (01): : 287 - 302
  • [4] SECRET: A Secure and Efficient Certificate Revocation Scheme for Mobile Ad Hoc Networks
    Mall, Dieynaba
    Konate, Karim
    Pathan, Al-Sakib Khan
    [J]. 2014 INTERNATIONAL SYMPOSIUM ON BIOMETRICS AND SECURITY TECHNOLOGIES (ISBAST), 2014, : 137 - 143
  • [5] A Study on Certificate Revocation in Mobile Ad Hoc Networks
    Liu, Wei
    Nishiyama, Hiroki
    Ansari, Nirwan
    Kato, Nei
    [J]. 2011 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2011,
  • [6] Enhanced certificate revocation scheme with justification facility in mobile ad-hoc networks
    Krishnan, R. Santhana
    Julie, E. Golden
    Robinson, Y. Harold
    Kumar, Raghvendra
    Pham Huy Thong
    Le Hoang Son
    [J]. COMPUTERS & SECURITY, 2020, 97
  • [7] Certificate Revocation to Cope with False Accusations in Mobile Ad Hoc Networks
    Park, Kyul
    Nishiyama, Hiroki
    Ansari, Nirwan
    Kato, Nei
    [J]. 2010 IEEE 71ST VEHICULAR TECHNOLOGY CONFERENCE, 2010,
  • [8] Implementation of Cluster Based Certificate Revocation in Mobile Ad Hoc Networks
    Jarang, Megha R.
    Nimbalkar, M. V.
    [J]. 2015 INTERNATIONAL CONFERENCE ON GREEN COMPUTING AND INTERNET OF THINGS (ICGCIOT), 2015, : 610 - 615
  • [9] A distributed user revocation scheme for ad-hoc networks
    Anzai, J
    Matsumoto, T
    [J]. IEICE TRANSACTIONS ON COMMUNICATIONS, 2005, E88B (09) : 3635 - 3642
  • [10] An Enhanced Distributed Certificate Authority Scheme for Authentication in Mobile Ad-hoc Networks
    Ayyasamy, Rajaram
    Subramani, Palaniswami
    [J]. INTERNATIONAL ARAB JOURNAL OF INFORMATION TECHNOLOGY, 2012, 9 (03) : 291 - 298