摘要
为了提高无线传感网络(WSN)广播认证抗DDoS(distributed denial of service)攻击的性能,构建了一种基于DBP-MSP和安全路径检测机制的广播认证协议.通过引入puzzle的难度等级k,合理控制广播节点的广播能耗;通过引入广播状态表,接收节点验证发送节点的puzzle解答,基于这种弱验证排除虚假数据包,防止了针对广播认证协议的DDoS攻击.性能分析表明:在无线传感网中,基于DBP-MSP(dynamic bit pattern-MSP)和安全路径检测的广播认证协议不仅具有抗DDoS性能,还能解决一般MSP(message specific puzzle)协议要求广播节点具有较强计算能力、充足的能源供应、较多的内存资源的问题,扩大其在一般无线传感网中的使用范围.
In order to help the wireless sensor network(WSN)resist DDoS attacks in broadcast authentication,a broadcast authentication protocol strategy based on DBP-MSP(dynamic bit pattern-MSP) and safe routing is proposed in this paper.By introducing puzzle difficulty level k,the strategy can properly control power consumption of the sender.By introducing broadcast state table,the receiver verifies the puzzle solution from the transmitting node.The false data packet is excluded,thus DDoS attacks to broadcast authentication protocol can be prevented by this kind of weak authenticator.The performance analysis indicates that the new broadcast authentication protocol based on DBP-MSP can achieve better performance in dealing with DDoS attacks,and solve the limitation that a powerful sender with large memory resource is required in general message specific puzzle(MSP) strategy,which is more secure and efficient in most WSN.
出处
《应用科技》
CAS
2011年第10期54-59,共6页
Applied Science and Technology