首页> 外文学位 >Anonymity protection and access control in mobile network environment.
【24h】

Anonymity protection and access control in mobile network environment.

机译:移动网络环境中的匿名保护和访问控制。

获取原文
获取原文并翻译 | 示例

摘要

Wireless communication technologies have been playing an important role in modern society. Due to its inherent mobility property, wireless networks are more vulnerable to passive attacks than traditional wired networks. Anonymity, as an important issue in mobile network environment, serves as the first topic that leads to all the research work presented in this manuscript. Specifically, anonymity issue in Mobile Ad hoc Networks (MANETs) is discussed with details as the first section of research.;To thoroughly study on this topic, the presented work approaches it from an attacker's perspective. Under a perfect scenario, all the traffic in a targeted MANET exhibits the communication relations to a passive attacker. However, localization errors pose a significant influence on the accuracy of the derived communication patterns. To handle such issue, a new scheme is proposed to generate super nodes, which represent the activities of user groups in the target MANET. This scheme also helps reduce the scale of monitoring work by grouping users based on their behaviors.;The first part of work on anonymity in MANET leads to the thought on its major cause. The link-based communication pattern is a key contributor to the success of the traffic analysis attack. A natural way to circumvent such issue is to use link-less approaches. Information Centric Networking (ICN) is a typical instance of such kind. Its communication pattern is able to overcome the anonymity issue with MANET. However, it also comes with its own shortcomings. One of them is access control enforcement. To tackle this issue, a new naming scheme for contents transmitted in ICN networks is presented. This scheme is based on a new Attribute-Based Encryption (ABE) algorithm. It enforces access control in ICN with minimum requirements on additional network components.;Following the research work on ABE, an important function, delegation, exhibits a potential security issue. In traditional ABE schemes, Ciphertext-Policy ABE (CP-ABE), a user is able to generate a subset of authentic attribute key components for other users using delegation function. This capability is not monitored or controlled by the trusted third party (TTP) in the cryptosystem. A direct threat caused from this issue is that any user may intentionally or unintentionally lower the standards for attribute assignments. Unauthorized users/attackers may be able to obtain their desired attributes through a delegation party instead of directly from the TTP. As the third part of work presented in this manuscript, a three-level delegation restriction architecture is proposed. Furthermore, a delegation restriction scheme following this architecture is also presented. This scheme allows the TTP to have full control on the delegation function of all its direct users.
机译:无线通信技术在现代社会中一直发挥着重要作用。由于其固有的移动性,无线网络比传统的有线网络更容易受到被动攻击。作为移动网络环境中的重要问题,匿名是导致本手稿中所有研究工作的第一个主题。具体来说,作为研究的第一部分,详细讨论了移动自组织网络(MANET)中的匿名性问题。为了彻底研究此主题,本文提出的工作从攻击者的角度进行探讨。在理想情况下,目标MANET中的所有流量都表现出与被动攻击者的通信关系。但是,定位错误对派生的通信模式的准确性有重大影响。为了解决这个问题,提出了一种新的方案来生成超级节点,该超级节点表示目标MANET中用户组的活动。该方案还通过根据用户的行为对用户进行分组来帮助减少监视工作的规模。; MANET中匿名性工作的第一部分引出了对其主要原因的思考。基于链接的通信模式是成功进行流量分析攻击的关键因素。解决此问题的自然方法是使用无链接方法。信息中心网络(ICN)是这种类型的典型实例。它的通信模式能够克服MANET的匿名性问题。但是,它也有其自身的缺点。其中之一是访问控制实施。为了解决这个问题,提出了一种用于在ICN网络中传输的内容的新命名方案。此方案基于新的基于属性的加密(ABE)算法。它在ICN中强制执行访问控制,而对其他网络组件的最低要求。;在对ABE的研究工作之后,一项重要功能(委托)会出现潜在的安全问题。在传统的ABE方案(密文策略ABE(CP-ABE))中,用户可以使用委派功能为其他用户生成真实属性键组件的子集。此功能不受密码系统中受信任的第三方(TTP)的监视或控制。此问题引起的直接威胁是任何用户都可能有意或无意降低属性分配的标准。未经授权的用户/攻击者可能能够通过委派方而不是直接从TTP获得其所需的属性。作为本文的第三部分,提出了一个三级委托限制架构。此外,还提出了遵循此体系结构的委托限制方案。此方案允许TTP对其所有直接用户的委派功能具有完全控制权。

著录项

  • 作者

    Li, Bing.;

  • 作者单位

    Arizona State University.;

  • 授予单位 Arizona State University.;
  • 学科 Computer science.
  • 学位 Ph.D.
  • 年度 2016
  • 页码 130 p.
  • 总页数 130
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号