论文部分内容阅读
密钥管理是智能变电站信息安全防护措施成功实施的关键,密钥管理方案设计的难点在于结合智能变电站通信特点与安全需求,平衡安全性和效率。文中在分析智能变电站通信特点及其报文安全需求、Needham-Schroeder密钥管理方案应用于智能变电站可行性的基础上,提出一种基于改进NSSK协议的智能变电站密钥管理方案,给出该方案中密钥生成、分发、更新、销毁的详细流程及其产生问题的解决办法,分析该方案的密钥安全性、抗伪造攻击性、抗中间人攻击性、抗重放攻击性、前向和后向安全性、运算和传输时间开销,采用BAN逻辑判断该方案的有效性。分析结果表明,所提密钥管理方案对常见的攻击有较好的抵抗性,具有较少的运算和传输时间开销,能满足智能变电站信息安全需求。
Key management is the key to successful implementation of information security precaution in smart substation. The key point of the key management scheme design is to balance the security and efficiency with the characteristics and security requirements of intelligent substation communication. Based on the analysis of the characteristics of intelligent substation communication and its packet security requirements and the Needham-Schroeder key management scheme applied to the feasibility of intelligent substation, this paper proposes a key management scheme of intelligent substation based on improved NSSK protocol. The detailed process of generating, distributing, updating and destroying the middle key, and the solution to the problem, the key security, anti-forgery attack, anti-man-in-the-middle attack, anti-replay attack, To security, computing and transmission time overhead, the use of BAN logic to determine the effectiveness of the program. The analysis results show that the proposed key management scheme has good resistance to common attacks, has less computation and transmission time overhead, and can meet the information security requirements of smart substations.