Multi-Level Key Management Scheme for Multi-Level Removable Storage Devices


  1. 1. 信息工程大学密码工程学院
    2. 95028部队参谋部航管气象处
  • 通讯作者: 冯力
  • 作者简介:冯力 硕士研究生,主要研究方向为信息安全、移动存储. 邓国庆 工程师,主要研究方向为航空管制技术(含电子、通信、网络技术、雷达方向). 郁滨 博士,教授,主要研究方向为信息安全、视觉密码技术.

Abstract: Aiming at the key management problem of multi-level removable storage devices, a multi-level key management scheme is proposed based on the idea of the hierarchical key, which is able to satisfy the requirements of multi-level information secure interaction. The scheme constructs key relationship parameters among devices with different security levels based on the one-way hash function and the access control matrix. Besides, it designs a multi-level key derivation algorithm and a dynamic key update strategy. The analysis shows that this plan is simple and safe, and it enables the host to authorized access to the multi-level partition of the removable storage devices. In addition, the key management problem for multi-level removable storage devices can be effectively solved, which is of great significance for enhancing the security of multilevel information interaction.

Key words: key management, removable storage device, multilevel, hierarchical key, authorized access

摘要: 针对多密级移动存储设备密钥管理问题,借鉴等级密钥思想,提出一种能够满足多密级信息安全交互需求的多级密钥管理方案.方案基于哈希函数单向性,根据访问控制矩阵构造不同密级设备间密钥关系参数,并设计多级密钥推导算法、动态密钥更新策略.分析表明,方案实现简单、安全性好,能够实现主机对移动存储设备多密级分区的授权访问.方案能够有效解决多密级移动存储设备密钥管理问题,对加强多密级信息交互安全具有重要意义.

关键词: 密钥管理, 移动存储设备, 多密级, 等级密钥, 授权访问