Flexible Non-interactive Short-term Implicit Certificate Generation for VANETs

Rui Liu,Yun Lu,Jianping Pan
2024-02-05
Abstract:A leading industry standard for secure and trusted communication in vehicular ad-hoc networks (VANETs) is the Security Credential Management System (SCMS). It uses anonymous certificates, functioning as pseudonyms, to preserve the privacy of vehicles. With the rapid development of advanced applications in VANETs, such as crowdsensing and federated learning, vehicles need to communicate with each other or infrastructures more frequently, leading to a higher demand for pseudonyms. However, the current approach of certificate provisioning in SCMS is not able to fully support pseudonyms, due to storage limitation, cost of connectivity establishment, and communication overhead of certificate downloading. To tackle this challenge, we propose a non-interactive approach for SCMS, allowing vehicles themselves to generate short-term key pairs and anonymous implicit certificates. Our evaluation and comparison with previous work show that our solution not only effectively reduces the communication cost, but also grants vehicles greater flexibility in certificate generation and use. On the technical side, to the best of our knowledge, this is the first work which (1) applies sanitizable signature for non-interactive anonymous certificate generation, and (2) is specifically designed for SCMS, which opens up possibilities for extensions and applications in industry.
Cryptography and Security,Networking and Internet Architecture
What problem does this paper attempt to address?
### Problems the paper attempts to solve This paper aims to solve the certificate provisioning problem faced by the Security Credential Management System (SCMS) in Vehicular Ad - hoc Networks (VANETs). Specifically, with the rapid development of VANET technology, especially the increasing demand in advanced applications such as crowdsensing and federated learning, the communication frequency among vehicles has increased significantly, leading to a sharp increase in the demand for anonymous certificates (i.e., pseudonyms). However, the current certificate provisioning methods in SCMS have the following deficiencies: 1. **Storage limitations**: It may not be feasible for vehicles to store a large number of certificates because the memory of vehicles is limited. 2. **High connection establishment cost**: The cost of frequently establishing connections with Certificate Authorities (CA) or Road - side Units (RSU) and downloading certificates is high. 3. **Large communication overhead**: The communication overhead during the certificate - downloading process is large, and due to the high mobility of vehicles, the communication may be unreliable and cause significant delays. 4. **Lack of flexibility**: The current SCMS design lacks flexibility. All registered vehicles follow the same certificate provisioning model and cannot be personalized according to different driving habits, privacy requirements, and application requirements. To solve these problems, the paper proposes a Flexible Non - Interactive One - time Implicit Certificate Generation Method (NOINS), which allows vehicles to generate short - term key pairs and anonymous implicit certificates on their own without interacting with CA or RSU. This method not only reduces communication costs but also gives vehicles more flexibility to generate and use certificates. ### Main contributions 1. **Introduction of erasable signatures**: For the first time, erasable signatures are applied to non - interactive anonymous certificate generation and improved for SCMS. 2. **Personalized certificate generation**: Vehicles can generate certificates personalized according to their own driving habits and privacy requirements, avoiding certificate waste or shortage. 3. **Privacy protection**: The generated short - term public keys and certificates are unlinkable, providing vehicle privacy and message authentication. 4. **Compatibility and extensibility**: NOINS can be directly integrated on the existing SCMS infrastructure and provides new possibilities for future research directions. Through these improvements, NOINS effectively solves the challenges of the existing SCMS in certificate provisioning and improves the communication efficiency and security in VANETs.