|
ABSTRACT
Distributed Sensor Networks (DSNs) are ad-hoc mobile networks that include sensor nodes with limited computation and communication capabilities. DSNs are dynamic in the sense that they allow addition and deletion of sensor nodes after deployment to grow the network or replace failing and unreliable nodes. DSNs may be deployed in hostile areas where communication is monitored and nodes are subject to capture and surreptitious use by an adversary. Hence DSNs require cryptographic protection of communications, sensor-capture detection, key revocation and sensor disabling. In this paper, we present a key-management scheme designed to satisfy both operational and security requirements of DSNs. The scheme includes selective distribution and revocation of keys to sensor nodes as well as node re-keying without substantial computation and communication capabilities. It relies on probabilistic key sharing among the nodes of a random graph and uses simple protocols for shared-key discovery and path-key establishment, and for key revocation, re-keying, and incremental addition of nodes. The security and network connectivity characteristics supported by the key-management scheme are discussed and simulation experiments presented.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Carlo Blundo , Alfredo De Santis , Amir Herzberg , Shay Kutten , Ugo Vaccaro , Moti Yung, Perfectly-Secure Key Distribution for Dynamic Conferences, Proceedings of the 12th Annual International Cryptology Conference on Advances in Cryptology, p.471-486, August 16-20, 1992
|
| |
2
|
|
| |
3
|
D. W. Carman, P. S. Kruus and B. J. Matt,"Constraints and Approaches for Distributed Sensor Network Security," dated September 1, 2000. NAI Labs Technical Report #00-010, available at http://download.nai.com/products/media/nai/zip/nailabs-report-00-010-final.zip
|
| |
4
|
|
 |
5
|
Jason Hill , Robert Szewczyk , Alec Woo , Seth Hollar , David Culler , Kristofer Pister, System architecture directions for networked sensors, Proceedings of the ninth international conference on Architectural support for programming languages and operating systems, p.93-104, November 2000, Cambridge, Massachusetts, United States
|
| |
6
|
|
| |
7
|
IBM, IBM 4758 General Information Manual, available at http://www.ibm.com/security/cryptocards/
|
| |
8
|
|
 |
9
|
J. M. Kahn , R. H. Katz , K. S. J. Pister, Next century challenges: mobile networking for “Smart Dust”, Proceedings of the 5th annual ACM/IEEE international conference on Mobile computing and networking, p.271-278, August 15-19, 1999, Seattle, Washington, United States
[doi> 10.1145/313451.313558]
|
| |
10
|
Leo Marks, Between Silk and Cyanide - A Codemaker's War, 1941--1945, A Touchstone Book, Simon & Schuster, Inc., 2000.
|
 |
11
|
Phillip Rogaway , Mihir Bellare , John Black , Ted Krovetz, OCB: a block-cipher mode of operation for efficient authenticated encryption, Proceedings of the 8th ACM conference on Computer and Communications Security, November 05-08, 2001, Philadelphia, PA, USA
[doi> 10.1145/501983.502011]
|
| |
12
|
J. Spencer, The Strange Logic of Random Graphs, Algorithms and Combinatorics 22, Springer Verlag 2000, ISBN 3-540-41654-4.
|
| |
13
|
F. Stajano, Security for Ubiquitous Computing, John Wiley and Sons, New York, Feb. 12, 2002, ISBN: 0-470-84493-0, 267 pp.
|
| |
14
|
|
CITED BY 208
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Fan Ye , Haiyun Luo , Songwu Lu , Lixia Zhang, Poster abstract: statistical en-route filtering in large scale sensor networks, Proceedings of the 1st international conference on Embedded networked sensor systems, November 05-07, 2003, Los Angeles, California, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
James Newsome , Elaine Shi , Dawn Song , Adrian Perrig, The sybil attack in sensor networks: analysis & defenses, Proceedings of the third international symposium on Information processing in sensor networks, April 26-27, 2004, Berkeley, California, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Bo-Cheng Charles Lai , David D. Hwang , Sungha Pete Kim , Ingrid Verbauwhede, Reducing radio energy consumption of key management protocols for wireless sensor networks, Proceedings of the 2004 international symposium on Low power electronics and design, August 09-11, 2004, Newport Beach, California, USA
|
|
|
|
|
|
Roberto Di Pietro , Luigi V. Mancini , Alessandro Mei , Alessandro Panconesi , Jaikumar Radhakrishnan, Connectivity properties of secure wireless sensor networks, Proceedings of the 2nd ACM workshop on Security of ad hoc and sensor networks, October 25-25, 2004, Washington DC, USA
|
|
|
Kui Ren , Tieyan Li , Zhiguo Wan , Feng Bao , Robert H. Deng , Kwangjo Kim, Highly reliable trust establishment scheme in ad hoc networks, Computer Networks: The International Journal of Computer and Telecommunications Networking, v.45 n.6, p.687-699, 21 August 2004
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Mohammed A. Moharrum , Mohamed Eltoweissy, A study of static versus dynamic keying schemes in sensor networks, Proceedings of the 2nd ACM international workshop on Performance evaluation of wireless ad hoc, sensor, and ubiquitous networks, October 10-13, 2005, Montreal, Quebec, Canada
|
|
|
|
|
|
Wensheng Zhang , Hui Song , Sencun Zhu , Guohong Cao, Least privilege and privilege deprivation: towards tolerating mobile sink compromises in wireless sensor networks, Proceedings of the 6th ACM international symposium on Mobile ad hoc networking and computing, May 25-27, 2005, Urbana-Champaign, IL, USA
|
|
|
Hao Yang , Fan Ye , Yuan Yuan , Songwu Lu , William Arbaugh, Toward resilient security in wireless sensor networks, Proceedings of the 6th ACM international symposium on Mobile ad hoc networking and computing, May 25-27, 2005, Urbana-Champaign, IL, USA
|
|
|
|
|
|
|
|
|
Takashi Ito , Hidenori Ohta , Nori Matsuda , Takeshi Yoneda, A key pre-distribution scheme for secure sensor networks using probability density function of node deployment, Proceedings of the 3rd ACM workshop on Security of ad hoc and sensor networks, November 07-07, 2005, Alexandria, VA, USA
|
|
|
Wenliang Du , Jing Deng , Yunghsiang S. Han , Pramod K. Varshney , Jonathan Katz , Aram Khalili, A pairwise key predistribution scheme for wireless sensor networks, ACM Transactions on Information and System Security (TISSEC), v.8 n.2, p.228-258, May 2005
|
|
|
|
|
|
|
|
|
Jiejun Kong , Zhengrong Ji , Weichao Wang , Mario Gerla , Rajive Bagrodia , Bharat Bhargava, Low-cost attacks against packet delivery, localization and time synchronization services in under-water sensor networks, Proceedings of the 4th ACM workshop on Wireless security, September 02-02, 2005, Cologne, Germany
|
|
|
|
|
|
|
|
|
Arno Wacker , Mirko Knoll , Timo Heiber , Kurt Rothermel, A new approach for establishing pairwise keys for securing wireless sensor networks, Proceedings of the 3rd international conference on Embedded networked sensor systems, November 02-04, 2005, San Diego, California, USA
|
|
|
|
|
|
Hamdy S. Soliman , Mohammed Omari, Application of synchronous dynamic encryption system (SDES) in wireless sensor networks, Proceedings of the 2nd ACM international workshop on Performance evaluation of wireless ad hoc, sensor, and ubiquitous networks, October 10-13, 2005, Montreal, Quebec, Canada
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Anthony D. Wood , Lei Fang , John A. Stankovic , Tian He, SIGF: a family of configurable, secure routing protocols for wireless sensor networks, Proceedings of the fourth ACM workshop on Security of ad hoc and sensor networks, October 30-30, 2006, Alexandria, Virginia, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Eric Sabbah , Adnan Majeed , Kyoung-Don Kang , Ke Liu , Nael Abu-Ghazaleh, An application-driven perspective on wireless sensor network security, Proceedings of the 2nd ACM international workshop on Quality of service & security for wireless and mobile networks, October 02-02, 2006, Terromolinos, Spain
|
|
|
Eric Sabbah , Adnan Majeed , Kyoung-Don Kang , Ke Liu , Nael Abu-Ghazaleh, An application-driven perspective on wireless sensor network security, Proceedings of the 2nd ACM international workshop on Quality of service & security for wireless and mobile networks, October 02-02, 2006, Terromolinos, Spain
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Patrick Traynor , Raju Kumar , Hussain Bin Saad , Guohong Cao , Thomas La Porta, LIGER: implementing efficient hybrid security mechanisms for heterogeneous sensor networks, Proceedings of the 4th international conference on Mobile systems, applications and services, June 19-22, 2006, Uppsala, Sweden
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Mauro Conti , Roberto Di Pietro , Luigi Vincenzo Mancini , Alessandro Mei, Emergent properties: detection of the node-capture attack in mobile wireless sensor networks, Proceedings of the first ACM conference on Wireless network security, March 31-April 02, 2008, Alexandria, VA, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Paolo Baronti , Prashant Pillai , Vince W. C. Chook , Stefano Chessa , Alberto Gotta , Y. Fun Hu, Wireless sensor networks: A survey on the state of the art and the 802.15.4 and ZigBee standards, Computer Communications, v.30 n.7, p.1655-1695, May, 2007
|
|
|
|
|
|
|
|
|
|
|
|
Mark Luk , Ghita Mezzour , Adrian Perrig , Virgil Gligor, MiniSec: a secure sensor network communication architecture, Proceedings of the 6th international conference on Information processing in sensor networks, April 25-27, 2007, Cambridge, Massachusetts, USA
|
|
|
|
|
|
Mauro Conti , Roberto Di Pietro , Luigi Vincenzo Mancini , Alessandro Mei, A randomized, efficient, and distributed protocol for the detection of node replication attacks in wireless sensor networks, Proceedings of the 8th ACM international symposium on Mobile ad hoc networking and computing, September 09-14, 2007, Montreal, Quebec, Canada
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Jing Dong , Kurt E. Ackermann , Brett Bavar , Cristina Nita-Rotaru, Mitigating attacks against virtual coordinate based routing in wireless sensor networks, Proceedings of the first ACM conference on Wireless network security, March 31-April 02, 2008, Alexandria, VA, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Zhihong Liu , Jianfeng Ma , Qiping Huang , SangJae Moon, A pairwise key establishment scheme for heterogeneous sensor networks, Proceeding of the 1st ACM international workshop on Heterogeneous sensor and actor networks, May 30-30, 2008, Hong Kong, Hong Kong, China
|
|
|
Patrick Traynor , Raju Kumar , Heesook Choi , Guohong Cao , Sencun Zhu , Thomas La Porta, Efficient Hybrid Security Mechanisms for Heterogeneous Sensor Networks, IEEE Transactions on Mobile Computing, v.6 n.6, p.663-677, June 2007
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Dennis K. Nilsson , Tanya Roosta , Ulf Lindqvist , Alfonso Valdes, Key management and secure software updates in wireless process control environments, Proceedings of the first ACM conference on Wireless network security, March 31-April 02, 2008, Alexandria, VA, USA
|
|
|
|
|
|
|
|
|
Hailun Tan , Sanjay Jha , Diet Ostry , John Zic , Vijay Sivaraman, Secure multi-hop network programming with multiple one-way key chains, Proceedings of the first ACM conference on Wireless network security, March 31-April 02, 2008, Alexandria, VA, USA
|
|
|
Yang Xiao , Venkata Krishna Rayi , Bo Sun , Xiaojiang Du , Fei Hu , Michael Galloway, A survey of key management schemes in wireless sensor networks, Computer Communications, v.30 n.11-12, p.2314-2341, September, 2007
|
|
|
|
|
|
|
|
|
Chiu C. Tan , Haodong Wang , Sheng Zhong , Qun Li, Body sensor network security: an identity-based cryptography approach, Proceedings of the first ACM conference on Wireless network security, March 31-April 02, 2008, Alexandria, VA, USA
|
|
|
|
|
|
Wensheng Zhang , Minh Tran , Sencun Zhu , Guohong Cao, A random perturbation-based scheme for pairwise key establishment in sensor networks, Proceedings of the 8th ACM international symposium on Mobile ad hoc networking and computing, September 09-14, 2007, Montreal, Quebec, Canada
|
|
|
|
|
|
|
|
|
|
|
|
Babak Azimi-Sadjadi , Aggelos Kiayias , Alejandra Mercado , Bulent Yener, Robust key generation from signal envelopes in wireless networks, Proceedings of the 14th ACM conference on Computer and communications security, October 28-31, 2007, Alexandria, Virginia, USA
|
|
|
|
|
|
|
|
|
|
|
|
Leonardo B. Oliveira , Adrian Ferreira , Marco A. Vilaça , Hao Chi Wong , Marshall Bern , Ricardo Dahab , Antonio A. F. Loureiro, SecLEACH-On the security of clustered sensor networks, Signal Processing, v.87 n.12, p.2882-2895, December, 2007
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Mudhakar Srivatsa , Shane Balfe , Kenneth G. Paterson , Pankaj Rohatgi, Trust management for secure information flows, Proceedings of the 15th ACM conference on Computer and communications security, October 27-31, 2008, Alexandria, Virginia, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Mi Wen , Yan-Fei Zheng , Wen-jun Ye , Ke-Fei Chen , Wei-Dong Qiu, A key management protocol with robust continuity for sensor networks, Computer Standards & Interfaces, v.31 n.4, p.642-647, June, 2009
|
|
|
Li Chen , Chia-Chang Hsu , Chin-Laung Lei, A location-ID sensitive key establishment scheme in static wireless sensor networks, Proceedings of the International Conference on Mobile Technology, Applications, and Systems, September 10-12, 2008, Yilan, Taiwan
|
|
|
|
|
|
|
|
|
Boqing Zhou , Sujun Li , Qiaoliang Li , Xingming Sun , Xiaoming Wang, An efficient and scalable pairwise key pre-distribution scheme for sensor networks using deployment knowledge, Computer Communications, v.32 n.1, p.124-133, January, 2009
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Jorge Guajardo , Boris Škorić , Pim Tuyls , Sandeep S. Kumar , Thijs Bel , Antoon H. Blom , Geert-Jan Schrijen, Anti-counterfeiting, key distribution, and key storage in an ambient world via physical unclonable functions, Information Systems Frontiers, v.11 n.1, p.19-41, March 2009
|
|
|
|
|
|
|
|
|
Kaiping Xue , Mingxiu Hu , Peilin Hong , Hancheng Lu , Chan Guo , Yuan Zu, Study of improved key distribution mechanisms based on two-layer structure for wireless sensor network, Proceedings of the 2008 International Conference on Advanced Infocomm Technology, p.1-6, July 29-31, 2008, Shenzhen, China
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Han Chiang Tan , Jun Wen Wong , Jianying Zhou, Implementation and performance analysis for key divergent and evolution protocols in wireless sensor network, Proceedings of the 5th Annual International Conference on Mobile and Ubiquitous Systems: Computing, Networking, and Services, July 21-25, 2008, Dublin, Ireland
|
|
|
Alvaro A. Cardenas , Tanya Roosta , Shankar Sastry, Rethinking security properties, threat models, and the design space in sensor networks: A case study in SCADA systems, Ad Hoc Networks, v.7 n.8, p.1434-1447, November, 2009
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|