ADAPTIVE CERTIFICATE DISTRIBUTION MECHANISM IN VEHICULAR NETWORKS USING VARIABLE INTER-CERTIFICATE REFRESH PERIOD
    1.
    发明申请
    ADAPTIVE CERTIFICATE DISTRIBUTION MECHANISM IN VEHICULAR NETWORKS USING VARIABLE INTER-CERTIFICATE REFRESH PERIOD 有权
    使用可变证书证书周期的车辆网络中的自适应证书分发机制

    公开(公告)号:US20110238986A1

    公开(公告)日:2011-09-29

    申请号:US12731063

    申请日:2010-03-24

    IPC分类号: H04L9/32

    摘要: A method for improving the reliability and performance of Vehicle-to-Vehicle (V2V) networks where digital certificates are necessary for message authentication and some messages may be lost in transmission. The method uses a variable inter-certificate refresh period to optimize communications throughput based on network conditions such as node density and bandwidth saturation. In some network conditions, the inter-certificate refresh period may be increased, such that more certificate digests are sent between full digital certificates, to decrease average message size. In other network conditions, the inter-certificate refresh period may be decreased, to allow for more frequent message authentication by receiving nodes. Empirical data and an adaptive controller are used to select the refresh period which will provide the best performance based on network conditions.

    摘要翻译: 一种用于提高车载到车辆(V2V)网络的可靠性和性能的方法,其中数字证书对于消息认证是必要的,并且一些消息可能在传输中丢失。 该方法使用可变的证书间刷新周期来根据网络条件(如节点密度和带宽饱和度)优化通信吞吐量。 在一些网络条件下,可以增加证书间刷新周期,使得在全数字证书之间发送更多的证书摘要,以减少平均消息大小。 在其他网络条件下,可以减少证书间刷新周期,以允许接收节点进行更频繁的消息认证。 经验数据和自适应控制器用于选择基于网络条件提供最佳性能的刷新周期。

    Method of using ECDSA with winternitz one time signature
    2.
    发明授权
    Method of using ECDSA with winternitz one time signature 有权
    使用ECDSA与winternitz一次签名的方法

    公开(公告)号:US08386790B2

    公开(公告)日:2013-02-26

    申请号:US12712349

    申请日:2010-02-25

    摘要: A method is provided of authenticating a digitally signed message. A chain of messages is generated. A Winternitz pair of keys is generated for each respective message. A sequence number is assigned to each of the messages. Each of the sequence numbers cooperatively identify an order of Winternitz verifiers assigned to each of the messages. A signature to a first message in the chain of messages is signed using a digital signature algorithm private key. Signatures to each of the following messages in the chain of messages are signed using both Winternitz private keys and digital signature algorithm private keys. The signed messages are broadcast from a sender to a receiver. The first signed broadcast message is authenticated at the receiver by verifying the digital signature algorithm signature. At least some of the following signed broadcast messages are authenticated at the receiver by verifying only the Winternitz signature.

    摘要翻译: 提供了一种验证数字签名消息的方法。 生成消息链。 为每个相应的消息生成一个Winternitz对密钥。 序列号被分配给每个消息。 每个序列号协同地标识分配给每个消息的Winternitz验证器的顺序。 使用数字签名算法私钥对消息链中的第一个消息进行签名。 使用Winternitz私钥和数字签名算法私钥对签名链中的每个以下消息进行签名。 签名的消息从发送方广播到接收方。 通过验证数字签名算法签名,在接收方对第一个签署的广播消息进行认证。 通过仅验证Winternitz签名,在接收器处认证至少一些以下签名的广播消息。

    Exploiting Application Characteristics for Multiple-Authenticator Broadcast Authentication Schemes
    3.
    发明申请
    Exploiting Application Characteristics for Multiple-Authenticator Broadcast Authentication Schemes 有权
    利用多认证者广播认证方案的应用特点

    公开(公告)号:US20120265995A1

    公开(公告)日:2012-10-18

    申请号:US13086864

    申请日:2011-04-14

    IPC分类号: H04L9/00

    摘要: A method for securing communications in a vehicle-to-vehicle (V2V) system including an on-board computer of a broadcasting vehicle predicting a value for a vehicle parameter, generating a heavyweight signature corresponding to the predicted value, and obtaining an actual value for the vehicle parameter. The method also includes the computer comparing the predicted value to the actual value to determine if the predicted value bears a first relationship to the actual value. If the computer determines that the predicted value bears the relationship to the actual value, the on-board computer generates a lightweight authenticating signature to correspond to the predicted value and broadcasts a data message having the predicted value with the corresponding heavyweight authenticating signature and the corresponding lightweight authenticating signature.

    摘要翻译: 一种用于确保车辆到车辆(V2V)系统中的通信的方法,该系统包括预测车辆参数值的广播车辆的车载计算机,生成与预测值相对应的重量级签名,并获得实际值 车辆参数。 该方法还包括计算机将预测值与实际值进行比较以确定预测值是否与实际值具有第一关系。 如果计算机确定预测值与实际值具有关系,则车载计算机生成轻量级认证签名以对应于预测值,并且广播具有相应重量级认证签名的预测值的数据消息和对应的 轻量级认证签名。

    ADAPTIVE CERTIFICATE DISTRIBUTION MECHANISM IN VEHICULAR NETWORKS USING FORWARD ERROR CORRECTING CODES
    4.
    发明申请
    ADAPTIVE CERTIFICATE DISTRIBUTION MECHANISM IN VEHICULAR NETWORKS USING FORWARD ERROR CORRECTING CODES 有权
    使用前向纠错码的车辆网络中的自适应证书分发机制

    公开(公告)号:US20110238987A1

    公开(公告)日:2011-09-29

    申请号:US12731075

    申请日:2010-03-24

    IPC分类号: H04L9/32 H03M13/00

    摘要: A method for improving the reliability and performance of Vehicle-to-Vehicle (V2V) networks where digital certificates are necessary for message authentication and some messages may be lost in transmission. The method uses Forward Error Correcting (FEC) codes to encode a digital certificate into multiple segments, and attaches one or more segment to each message transmitted. Nodes receiving the messages can reconstruct the certificate as long as they successfully receive a minimum number of the transmitted messages, where the minimum number is less than the total number of messages transmitted. This allows message authentication to continue uninterrupted, even in a network environment where some messages are lost in transmission. Two different types of FEC codes are described, and adaptive schemes are included to optimize message throughput based on such network conditions as node density.

    摘要翻译: 一种用于提高车载到车辆(V2V)网络的可靠性和性能的方法,其中数字证书对于消息认证是必要的,并且一些消息可能在传输中丢失。 该方法使用前向纠错(FEC)码将数字证书编码成多个段,并将一个或多个段附加到每个发送的消息。 接收消息的节点可以重建证书,只要它们成功地接收到发送的消息的最小数量,其中最小数目小于发送的消息总数。 这样即使在传输中丢失某些消息的网络环境中,也可以使消息认证继续不间断。 描述了两种不同类型的FEC码,并且包括自适应方案以基于诸如节点密度的网络条件来优化消息吞吐量。

    Exploiting application characteristics for multiple-authenticator broadcast authentication schemes
    5.
    发明授权
    Exploiting application characteristics for multiple-authenticator broadcast authentication schemes 有权
    利用多认证者广播认证方案的应用特点

    公开(公告)号:US08756430B2

    公开(公告)日:2014-06-17

    申请号:US13086864

    申请日:2011-04-14

    IPC分类号: H04L9/32

    摘要: A method for securing communications in a vehicle-to-vehicle (V2V) system including an on-board computer of a broadcasting vehicle predicting a value for a vehicle parameter, generating a heavyweight signature corresponding to the predicted value, and obtaining an actual value for the vehicle parameter. The method also includes the computer comparing the predicted value to the actual value to determine if the predicted value bears a first relationship to the actual value. If the computer determines that the predicted value bears the relationship to the actual value, the on-board computer generates a lightweight authenticating signature to correspond to the predicted value and broadcasts a data message having the predicted value with the corresponding heavyweight authenticating signature and the corresponding lightweight authenticating signature.

    摘要翻译: 一种用于确保车辆到车辆(V2V)系统中的通信的方法,该系统包括预测车辆参数值的广播车辆的车载计算机,生成与预测值相对应的重量级签名,并获得实际值 车辆参数。 该方法还包括计算机将预测值与实际值进行比较以确定预测值是否与实际值具有第一关系。 如果计算机确定预测值与实际值具有关系,则车载计算机生成与预测值相对应的轻量级认证签名,并且广播具有相应重量级认证签名的具有预测值的数据消息,并且对应于 轻量级认证签名。

    Adaptive certificate distribution mechanism in vehicular networks using forward error correcting codes
    6.
    发明授权
    Adaptive certificate distribution mechanism in vehicular networks using forward error correcting codes 有权
    使用前向纠错码的车辆网络中的自适应证书分发机制

    公开(公告)号:US08627073B2

    公开(公告)日:2014-01-07

    申请号:US12731075

    申请日:2010-03-24

    摘要: A method for improving the reliability and performance of Vehicle-to-Vehicle (V2V) networks where digital certificates are necessary for message authentication and some messages may be lost in transmission. The method uses Forward Error Correcting (FEC) codes to encode a digital certificate into multiple segments, and attaches one or more segment to each message transmitted. Nodes receiving the messages can reconstruct the certificate as long as they successfully receive a minimum number of the transmitted messages, where the minimum number is less than the total number of messages transmitted. This allows message authentication to continue uninterrupted, even in a network environment where some messages are lost in transmission. Two different types of FEC codes are described, and adaptive schemes are included to optimize message throughput based on such network conditions as node density.

    摘要翻译: 一种用于提高车载到车辆(V2V)网络的可靠性和性能的方法,其中数字证书对于消息认证是必需的,并且一些消息可能在传输中丢失。 该方法使用前向纠错(FEC)码将数字证书编码成多个段,并将一个或多个段附加到每个发送的消息。 接收消息的节点可以重建证书,只要它们成功地接收到发送的消息的最小数量,其中最小数目小于发送的消息总数。 这样即使在传输中丢失某些消息的网络环境中,也可以使消息认证继续不间断。 描述了两种不同类型的FEC码,并且包括自适应方案以基于诸如节点密度的网络条件来优化消息吞吐量。

    Adaptive certificate distribution mechanism in vehicular networks using variable inter-certificate refresh period
    7.
    发明授权
    Adaptive certificate distribution mechanism in vehicular networks using variable inter-certificate refresh period 有权
    使用可变证书间刷新周期的车辆网络中的自适应证书分发机制

    公开(公告)号:US08499155B2

    公开(公告)日:2013-07-30

    申请号:US12731063

    申请日:2010-03-24

    IPC分类号: H04L9/32 H04L29/06

    摘要: A method for improving the reliability and performance of Vehicle-to-Vehicle (V2V) networks where digital certificates are necessary for message authentication and some messages may be lost in transmission. The method uses a variable inter-certificate refresh period to optimize communications throughput based on network conditions such as node density and bandwidth saturation. In some network conditions, the inter-certificate refresh period may be increased, such that more certificate digests are sent between full digital certificates, to decrease average message size. In other network conditions, the inter-certificate refresh period may be decreased, to allow for more frequent message authentication by receiving nodes. Empirical data and an adaptive controller are used to select the refresh period which will provide the best performance based on network conditions.

    摘要翻译: 一种用于提高车载到车辆(V2V)网络的可靠性和性能的方法,其中数字证书对于消息认证是必需的,并且一些消息可能在传输中丢失。 该方法使用可变的证书间刷新周期来根据网络条件(如节点密度和带宽饱和度)优化通信吞吐量。 在一些网络条件下,可以增加证书间刷新周期,使得在全数字证书之间发送更多的证书摘要,以减少平均消息大小。 在其他网络条件下,可以减少证书间刷新周期,以允许接收节点进行更频繁的消息认证。 经验数据和自适应控制器用于选择基于网络条件提供最佳性能的刷新周期。

    Method of Using ECDSA with Winternitz One Time Signature
    8.
    发明申请
    Method of Using ECDSA with Winternitz One Time Signature 有权
    使用ECDSA与Winternitz一次性签名的方法

    公开(公告)号:US20110208971A1

    公开(公告)日:2011-08-25

    申请号:US12712349

    申请日:2010-02-25

    IPC分类号: H04L9/32 H04L9/30

    摘要: A method is provided of authenticating a digitally signed message. A chain of messages is generated. A Winternitz pair of keys is generated for each respective message. A sequence number is assigned to each of the messages. Each of the sequence numbers cooperatively identify an order of Winternitz verifiers assigned to each of the messages. A signature to a first message in the chain of messages is signed using a digital signature algorithm private key. Signatures to each of the following messages in the chain of messages are signed using both Winternitz private keys and digital signature algorithm private keys. The signed messages are broadcast from a sender to a receiver. The first signed broadcast message is authenticated at the receiver by verifying the digital signature algorithm signature. At least some of the following signed broadcast messages are authenticated at the receiver by verifying only the Winternitz signature.

    摘要翻译: 提供了一种验证数字签名消息的方法。 生成消息链。 为每个相应的消息生成一个Winternitz对密钥。 序列号被分配给每个消息。 每个序列号协同地标识分配给每个消息的Winternitz验证器的顺序。 使用数字签名算法私钥对消息链中的第一个消息进行签名。 使用Winternitz私钥和数字签名算法私钥对签名链中的每个以下消息进行签名。 签名的消息从发送方广播到接收方。 通过验证数字签名算法签名,在接收方对第一个签署的广播消息进行认证。 通过仅验证Winternitz签名,在接收器处认证至少一些以下签名的广播消息。

    Flexible broadcast authentication in resource-constrained systems: providing a tradeoff between communication and computational overheads
    9.
    发明授权
    Flexible broadcast authentication in resource-constrained systems: providing a tradeoff between communication and computational overheads 有权
    资源受限系统中的灵活广播认证:提供通信和计算开销之间的折中

    公开(公告)号:US08452969B2

    公开(公告)日:2013-05-28

    申请号:US12561013

    申请日:2009-09-16

    IPC分类号: H04L9/32

    摘要: A method for authenticating a message that is transmitted wirelessly. The method includes providing a set of private key values that define a private key and performing a key pair generation process that provides a key pair including the private key and a public key, where performing the key pair generation process includes applying one or more hash functions to the private key values, where a succeeding hash function provides a hash of a previous hash function. The scheme uses a signature generation process that generates a message digest by applying a hash function on the message to be signed and then separates the message digest into two parts including signing bits and selection bits and using the private key to sign the message. A receiver verifies the authenticity of the received message using the public key and a signature verification algorithm.

    摘要翻译: 一种用于认证无线传输的消息的方法。 该方法包括提供定义私钥的一组私钥值,并执行提供包括私钥和公钥的密钥对的密钥对生成过程,其中执行密钥对生成处理包括应用一个或多个哈希函数 到私钥值,其中后续散列函数提供先前哈希函数的散列。 该方案使用签名生成过程,其通过对待签名的消息应用散列函数来生成消息摘要,然后将消息摘要分为两部分,包括签名位和选择位,并使用私钥对消息进行签名。 接收机使用公钥和签名验证算法验证接收到的消息的真实性。

    EFFICIENT TECHNIQUE TO ACHIEVE NON-REPUDIATION AND RESILIENCE TO DoS ATTACKS IN WIRELESS NETWORKS
    10.
    发明申请
    EFFICIENT TECHNIQUE TO ACHIEVE NON-REPUDIATION AND RESILIENCE TO DoS ATTACKS IN WIRELESS NETWORKS 有权
    在无线网络中实现无损和无偿攻击的有效技术

    公开(公告)号:US20110238997A1

    公开(公告)日:2011-09-29

    申请号:US12731833

    申请日:2010-03-25

    IPC分类号: H04L9/32 H04L29/06

    摘要: A computationally efficient message verification strategy that achieves non-repudiation and resilience to computational denial of service attacks in conjunction with a broadcast authentication protocol that authenticates messages using a combination of a digital signature and a TESLA MAC. When messages are received at a receiver, the verification strategy separates the messages into messages with the same sender identification. The strategy then determines whether the TESLA MAC authenticator is valid for each message and discards those messages that do not have a valid TESLA MAC. The strategy collects the messages that have a valid TESLA MAC for each sender identification and performs a batch verification process on the group of messages to determine if the messages in the group have a valid digital signature. This strategy verifies each message in the group of messages if the batch verification process shows that the group of messages has a valid digital signature.

    摘要翻译: 结合使用数字签名和TESLA MAC的组合认证消息的广播认证协议,实现对计算拒绝服务攻击的不可否认性和弹性的计算有效的消息验证策略。 当在接收器处接收到消息时,验证策略将消息分成具有相同发送者标识的消息。 然后,策略确定TESLA MAC认证器是否对每个消息有效,并丢弃那些没有有效TESLA MAC的消息。 该策略针对每个发送者标识收集具有有效TESLA MAC的消息,并对消息组执行批处理验证过程,以确定组中的消息是否具有有效的数字签名。 如果批次验证过程显示消息组具有有效的数字签名,则该策略将验证消息组中的每个消息。