系统工程与电子技术 ›› 2025, Vol. 47 ›› Issue (3): 987-996.doi: 10.12305/j.issn.1001-506X.2025.03.31

• 通信与网络 • 上一篇    下一篇

基于三次握手与MD5的轻量化接入认证算法

高月红1,*, 张雪2, 李晨阳1   

  1. 1. 北京邮电大学信息与通信工程学院, 北京 100876
    2. 北京机电工程研究所, 北京 100074
  • 收稿日期:2024-04-02 出版日期:2025-03-28 发布日期:2025-04-18
  • 通讯作者: 高月红
  • 作者简介:高月红 (1981—), 女, 副教授, 博士研究生导师, 博士, 主要研究方向为无线理论与技术
    张雪 (1992—), 女, 高级工程师, 硕士, 主要研究方向为无线通信与安全
    李晨阳 (1999—), 男, 硕士研究生, 主要研究方向为无线理论与技术

Lightweight access authentication algorithm based on three-way hand-shake and MD5

Yuehong GAO1,*, Xue ZHANG2, Chenyang LI1   

  1. 1. School of Information and Communication Engineering, Beijing University of Posts and Telecommunications, Beijing 100876, China
    2. Beijing Electro-Mechanical Engineering Institute, Beijing 100074, China
  • Received:2024-04-02 Online:2025-03-28 Published:2025-04-18
  • Contact: Yuehong GAO

摘要:

自组织网络由于其具有组网灵活、不需要固定设施即可完成通信的特点, 在抢险救灾、军事对抗等场景有着广泛的应用, 但其安全性缺乏足够的保障。针对自组织网络在建网阶段可能受到外部攻击者干扰的问题, 设计一种高可靠、低开销的接入认证算法。为了降低算法带来的通信载荷开销, 对传统的消息摘要5(message-digest 5, MD5)加密算法进行改进, 减少加密结果的长度。为了降低算法带来的认证时间开销和抵抗传输差错, 对传统的“三次握手”机制进行改进, 引入重传机制减少传输差错, 并增加报警机制以实现对攻击者的识别。通过仿真与理论分析, 可以证明该算法能够抵抗节点之间的传输差错、识别出潜在的攻击者并维持较低的通信载荷开销与认证时间开销, 可以广泛应用于各类自组织网络系统中。

关键词: 接入认证, 自组织网络, 消息摘要5算法, 三次握手

Abstract:

The self-organizing network, due to its characteristics of flexible networking and communication completion without fixed facilities, has been widely used in scenarios such as emergency rescue and military confrontation. However, its security lacks sufficient protection. Addressing the potential interference from external attackers during the network construction phase of self-organizing networks, a high-reliability, low-cost access authentication algorithm is designed. To reduce the communication payload overhead introduced by the algorithm, improvements are made to the traditional message digest 5 (MD5) encryption algorithm, reducing the length of the encrypted results. In order to reduce the authentication time overhead and resist transmission errors introduced by the algorithm, enhancements are made to the traditional "three-way hand-shake" mechanism, introducing a retransmission mechanism to reduce transmission errors, and an alert mechanism to identify attackers. Through simulation and theoretical analysis, it can be demonstrated that the proposed algorithm is capable of resisting transmission errors between nodes, identifying potential attackers, and maintaining low communication payload and authentication time overhead. It can be widely applied in various self-organizing network systems.

Key words: access authentication, self-organizing network, message-digest 5 (MD5) algorithm, three-way hand-shake

中图分类号: