Internet of Vehicles(IoV) is increasingly used as a medium to propagate critical information via establishing connections between entities such as vehicles and infrastructures. During message transmission, privacy-preserving authentication is considered as the first line of defence against attackers and malicious information. To achieve a more secure and stable communication environment, ever-increasing numbers of blockchain-based authentication schemes are proposed. At first glance, existing approaches provide robust architectures and achieve transparent authentication. However, in these schemes, verifiers must connect to the blockchain network in advance and accomplish the authentication with smart contracts, which prolongs the latency. To remedy this limit, we propose a privacy-preserving blockchain-based authentication protocol(PBAG), where Root Authority(RA) generates a unique evaluation proof corresponding to the issued certificate for each authorized vehicle. Meanwhile, RA broadcasts a public global commitment based on all valid certificates. Instead of querying certificates stored in the blockchain, the vehicle will be efficiently proved to be an authorized user by utilizing the global commitment through bilinear pairing. Moreover, our scheme can prevent vehicles equipped with invalid certificates from accomplishing the authentication, thus avoiding the time-consuming for checking Certificate Revocation List (CRL). Finally, our scheme provides privacy properties such as anonymity and unlinkability. It allows anonymous authentication based on evaluation proofs and achieves traceability of identity in the event of a dispute. The simulation demonstrates that the average time of verification is 0.36ms under the batch-enabled mechanism, outperforming existing schemes by at least 63.7%.
翻译:车辆互联网(IoV)日益被用作媒体,通过建立车辆和基础设施等实体之间的联系来传播重要信息。在信息传输过程中,保密认证被视为针对攻击者和恶意信息的第一道防线。为了实现更安全稳定的通信环境,提出了越来越多的基于链锁的认证办法。乍一看,现有办法提供了强有力的架构,并实现了透明的认证。然而,在这些办法中,核查人员必须提前与屏障网络连接,完成与智能合同的认证,从而延长了延缓期期。为了纠正这一限制,我们建议采用保密链基础认证协议(PBAG),让“根机构”生成一个与所签发的每部授权车辆证书相对应的独特评价证据。与此同时,RA根据所有有效的证书,播放了越来越多的全球公开承诺。与其储存在屏障的查询证书,相比,该车辆将被有效地证明是授权用户,通过双线对齐来利用全球承诺。此外,我们的计划可以防止拥有无效证书的车辆完成认证工作,从而避免在检查每部授权车辆的平均保密性认证程序上花费时间,从而在检查每部授权车辆的保密性认证保密性认证清单中进行不透明性认证。最后的认证制度,在基于保密性认证的保密性认证清单中进行。