DocumentCode
235187
Title
An efficient certificate revocation scheme for large-scale AMI networks
Author
Mahmoud, Mohamed ; Akkaya, Kemal ; Rabieh, Khaled ; Tonyali, Samet
Author_Institution
Dept. of Electr. & Comput. Eng., Tennessee Tech Univ., Cookeville, TN, USA
fYear
2014
fDate
5-7 Dec. 2014
Firstpage
1
Lastpage
8
Abstract
Given the large geographic deployment and scalability of the Advanced Metering Infrastructure (AMI) networks, it is inefficient to create one large certificate revocation list (CRL) for all the networks. It is also inefficient to create a CRL for each meter having the certificates it needs because too many CRLs will be required. It is beneficial to balance the size of the CRLs and the overhead of forming and distributing them. In this paper, the certificate authority (CA) groups the AMI networks and composes one CRL for each group. We use Bloom filter to reduce the number of CRLs by increasing the groups size with acceptable overhead on the meters. However, Bloom filters suffer from false positives which is not acceptable in AMI networks because meters may miss important messages. We propose a novel scheme to identify and mitigate the false positives by making use of the fact that Bloom filters are free of false negatives. The meters should contact the gateway to resolve the false positives. We use Merkle tree to enable the gateway to provide efficient proof for certificate revocation without contacting the CA. We derive a mathematical formula to the probability of contacting the gateway as a function of the filter´s parameters. We will show that this probability can be low by properly designing the Bloom filter. In order to assess the performance and the applicability of the proposed scheme, we use ns-3 network simulator to implement the scheme in a IEEE 802.11s-based mesh AMI networks. The results demonstrate that our scheme can be used efficiently for AMI networks.
Keywords
data structures; network servers; power engineering computing; power meters; trees (mathematics); wireless LAN; wireless mesh networks; Bloom filter; CA groups; CRL; IEEE 802.11s-based mesh AMI networks; Merkle tree; advanced metering infrastructure networks; certificate authority groups; certificate revocation list; certificate revocation scheme; gateway; geographic deployment; mathematical formula; ns-3 network simulator; performance assessment; Companies; Logic gates; Public key; Smart grids; Vectors; Vegetation; AMI; Certificate revocation; Public key infrastructure; public key cryptography; smart grid security;
fLanguage
English
Publisher
ieee
Conference_Titel
Performance Computing and Communications Conference (IPCCC), 2014 IEEE International
Conference_Location
Austin, TX
Type
conf
DOI
10.1109/PCCC.2014.7017076
Filename
7017076
Link To Document