We use cookies to improve your experience with our site.
龚征, 唐韶华, 朱博. TuLP:一类面向医疗传感器网络的轻量级消息认证码[J]. 计算机科学技术学报, 2014, 29(1): 53-68. DOI: 10.1007/s11390-013-1411-8
引用本文: 龚征, 唐韶华, 朱博. TuLP:一类面向医疗传感器网络的轻量级消息认证码[J]. 计算机科学技术学报, 2014, 29(1): 53-68. DOI: 10.1007/s11390-013-1411-8
Zheng Gong, Pieter Hartel, Svetla Nikova, Shao-Hua Tang, Bo Zhu. TuLP:A Family of Lightweight Message Authentication Codes for Body Sensor Networks[J]. Journal of Computer Science and Technology, 2014, 29(1): 53-68. DOI: 10.1007/s11390-013-1411-8
Citation: Zheng Gong, Pieter Hartel, Svetla Nikova, Shao-Hua Tang, Bo Zhu. TuLP:A Family of Lightweight Message Authentication Codes for Body Sensor Networks[J]. Journal of Computer Science and Technology, 2014, 29(1): 53-68. DOI: 10.1007/s11390-013-1411-8

TuLP:一类面向医疗传感器网络的轻量级消息认证码

TuLP:A Family of Lightweight Message Authentication Codes for Body Sensor Networks

  • 摘要: 通常用于收集公开信息的无线传感器网络(WSN)往往只需要较低的安全保障级别,但对于医疗传感器网络(BSN)来说,患者的健康信息需要强认证性加以保护。本文首先针对常用无线传感器网络安全框架所提出的消息认证码的实用性问题提出新的分析。分析结果表明一些推荐的算法,例如CBC-MAC (TinySec), OCB-MAC (MiniSec)和XCBC-MAC (SenSec)并不一定适用于医疗传感器网络。特别是对于XCBC-MAC,本文提出了一种存在性伪造攻击方法。考虑到医疗传感器网络的硬件限制,我们基于PRESENT分组密码算法,设计了一类参数可调的轻量级消息认证码(TuLP系列)。其中TuLP算法对应于64比特输出长度。为了提高抗内部碰撞攻击能力,我们在TuLP的基础上设计了TuLP-128算法。与已公开相关消息认证码对比,TuLP轻量级消息认证码系列算法在时间和资源开销上均具有一定优势。

     

    Abstract: A wireless sensor network (WSN) commonly requires lower level security for public information gathering, whilst a body sensor network (BSN) must be secured with strong authenticity to protect personal health information. In this paper, some practical problems with the message authentication codes (MACs), which were proposed in the popular security architectures for WSNs, are reconsidered. The analysis shows that the recommended MACs for WSNs, e.g., CBC-MAC (TinySec), OCB-MAC (MiniSec), and XCBC-MAC (SenSec), might not be exactly suitable for BSNs. Particularly an existential forgery attack is elaborated on XCBC-MAC. Considering the hardware limitations of BSNs, we propose a new family of tunable lightweight MAC based on the PRESENT block cipher. The first scheme, which is named TuLP, is a new lightweight MAC with 64-bit output range. The second scheme, which is named TuLP-128, is a 128-bit variant which provides a higher resistance against internal collisions. Compared with the existing schemes, our lightweight MACs are both time and resource efficient on hardware-constrained devices.

     

/

返回文章
返回