首页> 外文期刊>Security and communication networks >DSA-Mesh:a distributed security architecture for wireless mesh networks
【24h】

DSA-Mesh:a distributed security architecture for wireless mesh networks

机译:DSA-Mesh:用于无线网状网络的分布式安全体系结构

获取原文
获取原文并翻译 | 示例
           

摘要

Wireless Mesh Networks (WMNs) have emerged recently as a technology for next-generation wireless networking. They consist of mesh routers and clients, where mesh routers are almost static and form the backbone of WMNs. WMNs provide network access for both mesh and conventional clients. In this paper, we propose DSA-Mesh, a fully distributed security architecture that provides access control for mesh routers as well as a key distribution scheme that supports layer-2 encryption to ensure security and data confidentiality of all communications that occur in the backbone of the WMN. DSA-Mesh exploits the routing capabilities of mesh routers: after connecting to the access network as generic wireless clients, new mesh routers authenticate to a key management service (consisting of several servers) implemented using threshold cryptography, and obtain a temporary key that is used both to prove their credentials to neighbor nodes and to encrypt all the traffic transmitted on wireless backbone links. A key feature in the design of DSA-Mesh is its independence from the underlying wireless technology used by network nodes to form the backbone. Furthermore, DSA-Mesh enables seamless mobility of mesh routers. Since it is completely distributed, DSA-Mesh permits to deploy automatically and incrementally large WMNs, while increasing, at the same time, the robustness of the system by eliminating the single point of failure typical of centralized architectures. DSA-Mesh has been implemented in Network Simulator, and extensive simulations have been performed in large-scale network scenarios, comparing it to a static key approach and to a centralized architecture where a single key server is deployed. Numerical results show that our proposed architecture considerably increases the WMN security and reliability, with a negligible impact on the network performance, thus representing an effective solution for wireless mesh networking. authentication;
机译:无线网状网络(WMN)最近作为下一代无线网络技术而出现。它们由网状路由器和客户端组成,其中网状路由器几乎是静态的,并构成WMN的主干。 WMN为网状客户端和常规客户端提供网络访问。在本文中,我们提出了DSA-Mesh,这是一种完全分布式的安全体系结构,它为网状路由器提供访问控制,并且密钥分配方案支持第2层加密,以确保在骨干网中发生的所有通信的安全性和数据机密性。 WMN。 DSA-Mesh利用了网状网络路由器的路由功能:作为通用无线客户端连接到接入网络后,新的网状网络路由器对使用阈值加密实现的密钥管理服务(由多个服务器组成)进行身份验证,并获得使用的临时密钥既可以向邻居节点证明其凭据,也可以加密在无线主干链路上传输的所有流量。 DSA-Mesh设计的关键特征是它与网络节点用来形成骨干网的底层无线技术的独立性。此外,DSA-Mesh支持网状路由器的无缝移动。由于它是完全分布式的,因此DSA-Mesh可以自动部署并逐步部署大型WMN,同时通过消除集中式体系结构中常见的单点故障来提高系统的健壮性。 DSA-Mesh已在Network Simulator中实现,并且已在大规模网络方案中进行了广泛的仿真,并将其与静态密钥方法和部署了单个密钥服务器的集中式体系结构进行了比较。数值结果表明,我们提出的体系结构大大提高了WMN的安全性和可靠性,对网络性能的影响可忽略不计,从而代表了无线网状网络的有效解决方案。认证;

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号