论文标题
VESPA:车辆安全和隐私建筑
VeSPA: Vehicular Security and Privacy-preserving Architecture
论文作者
论文摘要
在即将进行的车辆通信(VC)系统中,标准化和协调努力已达成共识,以使用专用的车辆公共钥匙基础设施(VPKI)。但是,仍然存在一些技术挑战,没有任何结论性答案。一个如此重要但开放的挑战之一是获得短期证书,化名:每辆车应如何与VPKI相互作用,例如,多久和多长时间?每辆车本身是否应该确定化名寿命?回答这些问题远非微不足道。每个选择都会影响用户隐私和系统性能,从而影响其安全性。在本文中,我们做出了新的系统努力来解决这个多方面的问题。我们制定了三项通常适用的策略,并通过实验评估VPKI系统性能,利用两个大规模的移动性数据集。从效率方面,我们认为最有希望的是,假名获取政策;我们发现,在这类政策中,可以通过中等开销来支持隐私保护方面最有希望的政策。此外,在所有情况下,这项工作都是第一个提供切实的证据,表明最先进的VPKI可以使用适度的计算资源服务相当大的领域或域。
Standardization and harmonization efforts have reached a consensus towards using a special-purpose Vehicular Public-Key Infrastructure (VPKI) in upcoming Vehicular Communication (VC) systems. However, there are still several technical challenges with no conclusive answers; one such an important yet open challenge is the acquisition of short-term credentials, pseudonym: how should each vehicle interact with the VPKI, e.g., how frequently and for how long? Should each vehicle itself determine the pseudonym lifetime? Answering these questions is far from trivial. Each choice can affect both the user privacy and the system performance and possibly, as a result, its security. In this paper, we make a novel systematic effort to address this multifaceted question. We craft three generally applicable policies and experimentally evaluate the VPKI system performance, leveraging two large-scale mobility datasets. We consider the most promising, in terms of efficiency, pseudonym acquisition policies; we find that within this class of policies, the most promising policy in terms of privacy protection can be supported with moderate overhead. Moreover, in all cases, this work is the first to provide tangible evidence that the state-of-the-art VPKI can serve sizable areas or domain with modest computing resources.