標題: 叢集式無線感測網路中的兩階層動態金鑰管理架構
A Two layers Dynamic Key Management Schemes for Cluster-Based Wireless Sensor Networks
作者: 張宏肇
Chang, Hung-Chao
關鍵字: Wireless Sensor Networks;無線感測網路;static key management;dynamic key management;cluster head;Exclusion Basis System;動態金鑰管理;靜態金鑰管理;互斥基底系統
出版社: 電機工程學系所
在這篇文章中,我們將首先描述在感測網路中不同型式的攻擊,因為無線網路通常應用於軍隊的應用及無人看管的無線環境,所以在提出新的金鑰架構前,先分析攻擊型態,加強架構的安全性。動態金鑰管理方式非常適合於感測網路中,因為感測網路為了符合環境需求,網路型態經常需要予以調整至最佳狀態。所以為了配合網路節點數量的增、減,我們將採用動態金鑰管理架構,並加上我們所提出改良的互斥基底系統(The Exclusion Basis System, EBS)金鑰組預置方式,也就是集群式EBS系統,可隨時配合感測網路規模調整金鑰組設置方式及數量,用以保留感測節點中稀有的儲存空間。之後再以區域組合式金鑰方式,也就是將大型感測網路,劃分為數個叢集所組成,在以叢集基礎下,再劃分成兩個層級,也就是叢集首領與節點為一個層級,通信閘道與通信閘道為另外一個層級,分別進行金鑰認證,加強其安全性及效率。最後將探討其效能及安全性,並與其他現行金鑰架構比較,來證明我們所提出的架構可符合金鑰管理架構預期的目標。

The objective of key management is to dynamically establish and maintain secure channels among communicating nodes, so a lot of key management schemes have been proposed for sensor networks. Desired features of key management in sensor networks include energy awareness, localized impact of attacks, and scaling to a large number of nodes. A primary challenge is how to make a balance in management between providing acceptable levels of security and conserving scarce resources, in particular energy, needed for network operations.
Many schemes, key pre-distribution is used as the main principles and basic assumptions of short-term existence of a relatively static network, which is not often expended network node, and the key is to replace or shorten the life of the infrequent, referred to as static schemes. In addition the rise of a new architecture-level, known as dynamic key management scheme, a frequent assumption that the long-term existence of new network nodes in order to maintain network security and survivability, thus requiring network re-generate the key, in response to network type of change and adjustment.
In this article, we will first describe the wireless sensor networks of different types of attacks, because wireless networks are usually used in military applications and wireless unattended environment, so the new key in the proposed scheme before analysis attack patterns, strengthening the scheme for security. Dynamic key management is very suitable for sensor networks because sensor networks to comply with environmental requirements, network types often need to be adjusted to the optimum condition. So in order to meet the increasing number of network nodes, subtract, we will use dynamic key management scheme, plus an improved system of EBS (The Exclusion Basis System) preset mode key group, which is the cluster EBS systems, sensor network at any time with the key group of settings to adjust the size and number of ways to keep the node in the rare storage space. After the key combination to the regional approach is the large-scale sensor network, divided into several clusters formed in the cluster basis, and then divided into two levels, that is, a cluster head and node level, the cluster leader and communications gateway to another level, key certification, respectively, to enhance the safety and efficiency. Finally, we discuss the issues about the efficacy and safety, and with other existing key scheme for comparison, to prove that our proposed scheme can meet the key management scheme of the desired objectives.
