Survivable Group-based Public Key Management for Mobile Ad Hoc Networks


Description

The characteristics of mobile ad hoc networks (MANETs), as the dynamic environment and the lack of infrastructure, make it difficult the implementation of effective security solutions. Cryptographic techniques are at the center of security solutions for wireless ad hoc networks. Public key infrastructures (PKIs) are essential for their efficient operation. Among the proposed PKIs systems for MANETs, the Self-Organized Public Key Management System for MANETs (PGP-Like) has been considered more suitable, as it is totally distributed, self-organized, and does not rely on any certificate authority. However, results show that PGP-Like is fully vulnerable to Sybil attacks.

Thus, this project aims to propose a survivable PKI whose goal is to allow its operation even in face of misbehavior attacks. This new PKI is called Survivable Group-based Public Key Management for MANETs (SG-PKM). It is designed to be more resistant to Sybil attacks than PGP-Like. In SG-PKM, nodes form groups based on users relationship, and issue certificates for each other. SG-PKM also stablishes that groups can issue certificates to other groups. Any two nodes, that do not have a direct connection between them, are able to authenticate themselves through certificate chains binding their groups. Moreover, the scheme requires at least two disjoint certificate chains for authentication, increasing the resistance to Sybil attacks. Finally, proposed scheme employs different evidences to prove the liability of users for their keys as well as social relationships for helping public key exchanges.

Analytical and simulation results show the improvements attained by our proposal in terms of effectiveness and survivability to different attacks. Results show that SG-PKM mantains its effectiveness in face of lack of cooperation attacks, even under 40% of selfish nodes, similarly to PGP-Like. More important, SG-PKM mitigates the impact of Sybil attacks, supporting the non-compromissing authentication rate above than 70%.

Accomplishments

  • Survey of the weaknesses and vulnerabilities of the PGP-like
  • Definition of metrics for quantifying the impacts of misbehavior attacks on the PGP-Like
  • Evaluation of the PGP-Like in scenarios with lack of cooperation and Sybil attacks
  • Specification of a key management scheme that keeps its performance under lack of cooperation attacks and is more resilient to Sybil ones, called SG-PKM
  • Analysis of the friends social networks in order to evaluate group formation and their relationships
  • Definition of metrics for evaluating SG-PKM under lack of cooperation and Sybil attacks
  • Evaluation of the SG-PKM in scenarios with lack of cooperation and Sybil attacks

Period

03/2007 - 07/2009 (finished)


Team

Eduardo da Silva
Michele Nogueira Lima
Aldri Luiz dos Santos
Luiz Carlos Pessoa Albini

Publications

  • Gerenciamento de chaves públicas sobrevivente baseado em grupos para MANETs. Eduardo da Silva, Aldri Luiz Santos, Luiz Carlos P. Albini. Concurso de Teses e Dissertações (CTD) - CSBC2010, p. 73-80. Belo Horizonte, Julho, 2010.
    [PDF] [Abstract] [Bibtex] [Slides] (Brazilian Conference)
  • Gerenciamento de chaves públicas sobrevivente baseado em grupos para MANETs. Eduardo da Silva. Master Dissertation. July, 2009.
    [PDF] [Abstract] [Bibtex] [Slides]
  • Chapter: Analyzing the Effectiveness of Self-Organized Public Key Management on MANETs under Lack of Cooperation and Impersonation attacks. Eduardo da Silva, Michele N. Lima, Aldri L. dos Santos, Luiz C. P. Albini. E-Business and Telecommunication. Series: Communications in Computer and Information Science - Springer, November 2009.
    [PDF] [Abstract] [Bibtex]
  • Survivable Keying for Wireless Ad Hoc Networks. Michele N. Lima, Eduardo Silva, Luiz C. P. Albini, Aldri L. dos Santos, Guy Pujolle. 11th IFIP/IEEE International Symposium on Integrated Network Management (IM 2009) - Mini-Conference, New York, June, 2009.
    [PDF] [Abstract] [BibTex]
  • Identity-Based Key Management in Mobile Ad Hoc Networks: Techniques and Applications. Eduardo da Silva, Michele N. Lima, Aldri L. dos Santos, Luiz C. P.Albini. Special issue on "Dependability Issues with Ubiquitous Wireless Access" - IEEE Wireless Communications Magazine, October 2008.
    [PDF] [Abstract] [ BibTex]
  • Quantifying Misbehaviour Attacks Against the Self-Organized Public Key Management on MANETs. Eduardo da Silva, Michele N. Lima, Aldri L. dos Santos, Luiz C. P. Albini. International Conference on Security and Cryptography (SECRYPT 2008), Porto, Portugal, p. 128-135, July, 2008.
    [PDF] [Abstract] [BibTex] [Slides]
  • Segurança em Redes Ad Hoc. Angelo Bannack, Eduardo da Silva, Michele N. Lima, Aldri L. dos Santos, Luiz C. P. Albini. In XXVI Simpósio Brasileiro de Telecomunicações (SBrT) 2008, Rio de Janeiro. Setembro 2008.
    [PDF] [Abstract] [Bibtex]


Awards

  • Dissertation awarded in third place at Concurso de Teses e Dissertações 2010 of Brazilian Computing Society.