| With the growing demand for natural disaster warning,space information monitoring and ground satellite communication,China’s aerospace,satellite communication,network security and other technologies continue to develop,derived from the multi-level and allround integration of heaven and earth information network.The integrated network of heaven and earth is formed by the heterogeneous integration of the space-based network composed of satellites and the ground-based network.The low earth orbit broadband satellite communication network,as a part of the space-based network,has many advantages such as wide coverage,large communication capacity and good transmission quality,and is the basic backbone of the integrated network of heaven and earth.However,the low earth orbit broadband satellite network is faced with problems such as high transmission delay,communication interference,identity fraud and security threats due to its characteristics,such as the long distance between satellite and ground,highly open communication links,limited computing and storage capabilities of satellite-borne equipment,and dynamic changes in the topology of the inter-satellite network.The security and performance of low earth orbit broadband satellite network authentication protocol are higher.Aiming at the current problems of low earth orbit broadband satellite network,this article studies and designs a security networking authentication protocol for low earth orbit constellation under the integrated information network of heaven and earth,including the networking authentication protocol between low earth orbit wideband satellite and ground control center and the networking authentication protocol between adjacent low earth orbit satellites.The main contents of this article are as follows:Firstly,for low earth orbit satellite broadband spaceborne limited equipment resources,star communications link highly open,hard to cope with the large computational overhead etc,this article through the establishment of an attacker model,describe the security requirements,designs and realizes a kind of based on pre Shared key mechanism of star network authentication scheme,guarantees the authentication protocol efficiency.The security of the protocol is verified by security analysis and BAN logic proof.In addition,a key switching method is proposed to ensure the normal operation of satellite-ground communication and further improve the confidentiality of user communication.Secondly,aiming at orbit of life is short,the low earth orbit broadband satellite network topology between dynamic change,satellite accidental damage,etc.,need according to the specific situations of satellite dynamic supplement and quick replacement,this paper designs and realizes a star between network authentication scheme based on CPK combined public key,in the certification process to reduce the dependence on third parties,BAN logic proof and security analysis are used to prove the security of the protocol,which ensures the security and reliability of authentication.In addition,based on the proposed satellite-ground networking authentication scheme for low earth orbit broadband satellites,the low earth orbit broadband satellite networking authentication system is implemented in this paper,and the functions and performance of the system are realized and tested in the joint test environment of the project,demonstrating the feasibility of the scheme in the practical application of the space-earth integrated information network. |