|
ABSTRACT
To achieve security in wireless sensor networks, it is important to be able to encrypt and authenticate messages sent among sensor nodes. Keys for encryption and authentication purposes must be agreed upon by communicating nodes. Due to resource constraints, achieving such key agreement in wireless sensor networks is non-trivial. Many key agreement schemes used in general networks, such as Diffie-Hellman and public-key based schemes, are not suitable for wireless sensor networks. Pre-distribution of secret keys for all pairs of nodes is not viable due to the large amount of memory used when the network size is large. To solve the key pre-distribution problem, two elegant key pre-distribution approaches have been proposed recently [11, 7].In this paper, we propose a new key pre-distribution scheme, which substantially improves the resilience of the network compared to the existing schemes. Our scheme exhibits a nice threshold property: when the number of compromised nodes is less than the threshold, the probability that any nodes other than these compromised nodes is affected is close to zero. This desirable property lowers the initial payoff of smaller scale network breaches to an adversary, and makes it necessary for the adversary to attack a significant proportion of the network. We also present an in depth analysis of our scheme in terms of network resilience and associated overhead.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Wireless Integrated Network Sensors, University of California, Available: http://www.janet.ucla.edu/WINS.
|
| |
2
|
I. F. Akyildiz, W. Su, Y. Sankarasubramaniam, and E. Cayirci. A survey on sensor networks. IEEE Communications Magazine, 40(8):102--114, August 2002.
|
| |
3
|
R. Anderson and M. Kuhn. Tamper resistance - a cautionary note. In Proceedings of the Second Usenix Workshop on Electronic Commerce, pages 1--11, November 1996.
|
| |
4
|
|
| |
5
|
Carlo Blundo , Alfredo De Santis , Amir Herzberg , Shay Kutten , Ugo Vaccaro , Moti Yung, Perfectly-Secure Key Distribution for Dynamic Conferences, Proceedings of the 12th Annual International Cryptology Conference on Advances in Cryptology, p.471-486, August 16-20, 1992
|
| |
6
|
D. W. Carman, P. S. Kruus, and B. J. Matt. Constraints and approaches for distributed sensor network security. NAI Labs Technical Report #00-010, available at http://download.nai.com/products/media/nai/zip/nailabs-report-00-010-final.zip, 2000.
|
| |
7
|
|
| |
8
|
W. Diffie and M. E. Hellman. New directions in cryptography. IEEE Transactions on Information Theory, 22:644--654, November 1976.
|
| |
9
|
W. Du, J. Deng, Y. S. Han, S. Chen, and P. K. Varshney. A key management scheme for wireless sensor networks using deployment knowledge. Technical Report, Syracuse University, July 2003. Available from http://www.cis.syr.edu/~wedu/Research/paper/ddhcv03.pdf.
|
| |
10
|
Erdos and Rényi. On random graphs I. Publ. Math. Debrecen, 6:290--297, 1959.
|
 |
11
|
|
 |
12
|
J. M. Kahn , R. H. Katz , K. S. J. Pister, Next century challenges: mobile networking for “Smart Dust”, Proceedings of the 5th annual ACM/IEEE international conference on Mobile computing and networking, p.271-278, August 15-19, 1999, Seattle, Washington, United States
[doi> 10.1145/313451.313558]
|
| |
13
|
F. J. MacWilliams and N. J. A. Sloane. The Theory of Error-Correcting Codes. New York, NY: Elsevier Science Publishing Company, Inc., 1977.
|
| |
14
|
|
| |
15
|
B. C. Neuman and T. Tso. Kerberos: An authentication service for computer networks. IEEE Communications, 32(9):33--38, September 1994.
|
 |
16
|
Adrian Perrig , Robert Szewczyk , Victor Wen , David Culler , J. D. Tygar, SPINS: security protocols for sensor netowrks, Proceedings of the 7th annual international conference on Mobile computing and networking, p.189-199, July 2001, Rome, Italy
[doi> 10.1145/381677.381696]
|
| |
17
|
W. W. Peterson. Error-Correcting Codes. Cambridge, MA: Mass. Inst. Tech., second edition, 1972.
|
 |
18
|
|
CITED BY 122
|
|
|
|
|
|
|
|
James Newsome , Elaine Shi , Dawn Song , Adrian Perrig, The sybil attack in sensor networks: analysis & defenses, Proceedings of the third international symposium on Information processing in sensor networks, April 26-27, 2004, Berkeley, California, USA
|
|
|
|
|
|
|
|
|
Roberto Di Pietro , Luigi V. Mancini , Alessandro Mei , Alessandro Panconesi , Jaikumar Radhakrishnan, Connectivity properties of secure wireless sensor networks, Proceedings of the 2nd ACM workshop on Security of ad hoc and sensor networks, October 25-25, 2004, Washington DC, USA
|
|
|
|
|
|
|
|
|
|
|
|
Mohammed A. Moharrum , Mohamed Eltoweissy, A study of static versus dynamic keying schemes in sensor networks, Proceedings of the 2nd ACM international workshop on Performance evaluation of wireless ad hoc, sensor, and ubiquitous networks, October 10-13, 2005, Montreal, Quebec, Canada
|
|
|
|
|
|
Hao Yang , Fan Ye , Yuan Yuan , Songwu Lu , William Arbaugh, Toward resilient security in wireless sensor networks, Proceedings of the 6th ACM international symposium on Mobile ad hoc networking and computing, May 25-27, 2005, Urbana-Champaign, IL, USA
|
|
|
|
|
|
Jiejun Kong , Zhengrong Ji , Weichao Wang , Mario Gerla , Rajive Bagrodia , Bharat Bhargava, Low-cost attacks against packet delivery, localization and time synchronization services in under-water sensor networks, Proceedings of the 4th ACM workshop on Wireless security, September 02-02, 2005, Cologne, Germany
|
|
|
|
|
|
Wensheng Zhang , Hui Song , Sencun Zhu , Guohong Cao, Least privilege and privilege deprivation: towards tolerating mobile sink compromises in wireless sensor networks, Proceedings of the 6th ACM international symposium on Mobile ad hoc networking and computing, May 25-27, 2005, Urbana-Champaign, IL, USA
|
|
|
|
|
|
Wenliang Du , Jing Deng , Yunghsiang S. Han , Pramod K. Varshney , Jonathan Katz , Aram Khalili, A pairwise key predistribution scheme for wireless sensor networks, ACM Transactions on Information and System Security (TISSEC), v.8 n.2, p.228-258, May 2005
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Mark Luk , Ghita Mezzour , Adrian Perrig , Virgil Gligor, MiniSec: a secure sensor network communication architecture, Proceedings of the 6th international conference on Information processing in sensor networks, April 25-27, 2007, Cambridge, Massachusetts, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Zhihong Liu , Jianfeng Ma , Qiping Huang , SangJae Moon, A pairwise key establishment scheme for heterogeneous sensor networks, Proceeding of the 1st ACM international workshop on Heterogeneous sensor and actor networks, May 30-30, 2008, Hong Kong, Hong Kong, China
|
|
|
Patrick Traynor , Raju Kumar , Heesook Choi , Guohong Cao , Sencun Zhu , Thomas La Porta, Efficient Hybrid Security Mechanisms for Heterogeneous Sensor Networks, IEEE Transactions on Mobile Computing, v.6 n.6, p.663-677, June 2007
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Yang Xiao , Venkata Krishna Rayi , Bo Sun , Xiaojiang Du , Fei Hu , Michael Galloway, A survey of key management schemes in wireless sensor networks, Computer Communications, v.30 n.11-12, p.2314-2341, September, 2007
|
|
|
Yang Xiao , Venkata Krishna Rayi , Bo Sun , Xiaojiang Du , Fei Hu , Michael Galloway, A survey of key management schemes in wireless sensor networks, Computer Communications, v.30 n.11-12, p.2314-2341, September, 2007
|
|
|
|
|
|
|
|
|
Wensheng Zhang , Minh Tran , Sencun Zhu , Guohong Cao, A random perturbation-based scheme for pairwise key establishment in sensor networks, Proceedings of the 8th ACM international symposium on Mobile ad hoc networking and computing, September 09-14, 2007, Montreal, Quebec, Canada
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Li Chen , Chia-Chang Hsu , Chin-Laung Lei, A location-ID sensitive key establishment scheme in static wireless sensor networks, Proceedings of the International Conference on Mobile Technology, Applications, and Systems, September 10-12, 2008, Yilan, Taiwan
|
|
|
Boqing Zhou , Sujun Li , Qiaoliang Li , Xingming Sun , Xiaoming Wang, An efficient and scalable pairwise key pre-distribution scheme for sensor networks using deployment knowledge, Computer Communications, v.32 n.1, p.124-133, January, 2009
|
|
|
|
|
|
|
|
|
|
|
|
Jorge Guajardo , Boris Škorić , Pim Tuyls , Sandeep S. Kumar , Thijs Bel , Antoon H. Blom , Geert-Jan Schrijen, Anti-counterfeiting, key distribution, and key storage in an ambient world via physical unclonable functions, Information Systems Frontiers, v.11 n.1, p.19-41, March 2009
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Han Chiang Tan , Jun Wen Wong , Jianying Zhou, Implementation and performance analysis for key divergent and evolution protocols in wireless sensor network, Proceedings of the 5th Annual International Conference on Mobile and Ubiquitous Systems: Computing, Networking, and Services, July 21-25, 2008, Dublin, Ireland
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Alvaro A. Cardenas , Tanya Roosta , Shankar Sastry, Rethinking security properties, threat models, and the design space in sensor networks: A case study in SCADA systems, Ad Hoc Networks, v.7 n.8, p.1434-1447, November, 2009
|
|
|
|
|