The recent worldwide introduction of RemoteID (RID) regulations forces all Unmanned Aircrafts (UAs), a.k.a. drones, to broadcast in plaintext on the wireless channel their identity and real-time location, for accounting and monitoring purposes. Although improving drones' monitoring and situational awareness, the RID rule also generates significant privacy concerns for UAs' operators, threatened by the ease of tracking of UAs and related confidentiality and privacy concerns connected with the broadcasting of plaintext identity information. In this paper, we propose $A^2RID$, a protocol suite for anonymous direct authentication and remote identification of heterogeneous commercial UAs. $A^2RID$ integrates and adapts protocols for anonymous message signing to work in the UA domain, coping with the constraints of commercial drones and the tight real-time requirements imposed by the RID regulation. Overall, the protocols in the $A^2RID$ suite allow a UA manufacturer to pick the configuration that best suits the capabilities and constraints of the drone, i.e., either a processing-intensive but memory-lightweight solution (namely, $CS-A^2RID$) or a computationally-friendly but memory-hungry approach (namely, $DS-A^2RID$). Besides formally defining the protocols and formally proving their security in our setting, we also implement and test them on real heterogeneous hardware platforms, i.e., the Holybro X-500 and the ESPcopter, releasing open-source the produced code. For all the protocols, we demonstrated experimentally the capability of generating anonymous RemoteID messages well below the time bound of $1$ second required by RID, while at the same time having quite a limited impact on the energy budget of the drone.
翻译:最近在全世界引入的远程识别(RID)条例迫使所有无人驾驶飞机(UAs),即无人驾驶飞机(UAs),为了会计和监测目的,在无线频道上以直白文本播放其身份和实时位置,尽管改进了无人驾驶飞机的监测和情况认识,但RID规则也给UA操作员带来了严重的隐私问题,因为容易跟踪普遍使用飞机以及与此有关的保密和隐私问题,与传播普通身份信息有关。在本文中,我们提议以A2RID为单位,建立一个协议套件,用于匿名直接认证和远程识别各种商用无人驾驶飞机(UA2RID),用于在无线频道上播放他们的身份和实时信息。 总的来说,$A2RI规则也使UA制造商能够选择最适合无人驾驶飞机的能力和限制,即,要么是处理的但记忆力较轻的公开认证,要么是正式地确定在UA2的域域域域域域域上签名的匿名信息。