电子技术应用2025,Vol.51Issue(1) :103-112.DOI:10.16157/j.issn.0258-7998.245481

电力物联网下终端密钥全生命周期安全管理方案

Full lifecycle security management scheme for terminal keys under power IoT

王辉 袁家辉 时振通 房牧
电子技术应用2025,Vol.51Issue(1) :103-112.DOI:10.16157/j.issn.0258-7998.245481

电力物联网下终端密钥全生命周期安全管理方案

Full lifecycle security management scheme for terminal keys under power IoT

王辉 1袁家辉 1时振通 1房牧2
扫码查看

作者信息

  • 1. 北京智芯微电子科技有限公司,北京 102200
  • 2. 国网山东省电力公司电力科学研究院,山东济南 250000
  • 折叠

摘要

针对电力物联网下的终端规模化接入及终端通信安全问题,提出了一种电力物联网下终端密钥全生命周期安全管理方案.首先,方案基于国密算法采用两级密钥分发架构,实现了电力终端在不同阶段的安全接入认证;其次,方案基于逻辑密钥层次结构采用组密钥管理模式,实现了对单播和广播数据的轻量级加密,保障电力终端的通信安全;另外,方案按照密钥用途不同采取不同的存储和访问管理策略,实现了终端密钥的混合式存储和管理,缩短终端密钥的访问时间.通过性能分析可知,相较于传统的接入认证和基于逻辑密钥层次结构的密钥管理方案,所提方案优化了终端计算量,减少了计算开销,简化了密钥更新过程,相较于常规终端密钥的存储和管理方式,所提方案在不改变现有硬件平台的基础上提升了密钥访问性能.

Abstract

Aiming at the terminal access and terminal communication security problems under Power IoT,a full lifecycle security management scheme for terminal keys under Power IoT is proposed in this paper.Firstly,the two-stage key distribution architec-ture based on the state secret algorithm is adopted in the scheme to achieve secure access authentication of power terminals at dif-ferent stages.Secondly,the group key management model based on logical key hierarchy is adopted in the scheme to achieve lightweight encryption of unicast and broadcast data to secure the communication of power terminals.In addition,different stor-age and access management strategies are adopted in the scheme to shorten the access time of terminal keys by implementing hy-brid storage and management of terminal keys according to key usage.The performance analysis shows that compared to the tradi-tional access authentication and key management scheme based on logical key hierarchy,the scheme of this paper optimizes the terminal computation,reduces the computational overhead and simplifies the key update process.Compared to conventional termi-nal key storage and management methods,the scheme of this paper improves key access performance without changing the exist-ing hardware platform.

关键词

电力物联网/接入认证/数据加密/密钥存储

Key words

power IoT/access authentication/data encryption/key storage

引用本文复制引用

出版年

2025
电子技术应用
华北计算机系统工程研究所(中国电子信息产业集团有限公司第六研究所)

电子技术应用

影响因子:0.567
ISSN:0258-7998
段落导航相关论文