| In recent years,China’s industrial Internet has been developing rapidly and has become an important force to accelerate the digital transformation of manufacturing industry and support highquality economic development,and the government has been promoting the integration of industrial Internet and manufacturing industry.Along with the development of industrial Internet,industrial Internet data has also been growing rapidly,and data security has become the main line of industrial Internet security.Once industrial Internet data is leaked or tampered with,it may affect the business activities of production enterprises,the stability of social development and even national security.Industrial sites usually face a large number of nodes,and in order to achieve safe and reliable information transmission between nodes,this paper proposes a blockchain-based dynamic key management scheme.In industrial communication,effective session keys need to be established between untrusted nodes,and usually the central node is used to pre-set the keys,each node needs to store n-1 keys,then the whole system needs to store n\bullet(n-1)keys,and as the number of nodes n increases,the keys stored in the whole system will grow exponentially.Therefore,combined with the characteristics of blockchain such as transparent and open,tamper-evident,etc.,the use of binary polynomial to generate shared keys reduces the storage overhead of nodes,ensures effective group key negotiation,and implements the threshold switching function to resist the threat of node access to the system,which has faster processing speed than the traditional PKI(Public Key Infrastructure).The environment of industrial sites is usually relatively harsh,and any node can be damaged or maliciously compromised,so a decentralized key management scheme is very necessary.Unlike previous centralized schemes or polycentric schemes,this paper proposes a blockchain-based distributed key management scheme.Based on binary polynomial,it utilizes blockchain,Kate commitment and a new secondary share distribution method to overcome the problem of excessive authority of previous distributors and achieve the purpose of decentralization.Not only can it efficiently adapt to node access,but also realize secure group communication through pseudo-random functions.After group members enter and exit,the system can efficiently update the group key to ensure the security of node data in the group. |