CN108898708B - Smart access control system based on quantum teleportation and wireless local area network - Google Patents
Smart access control system based on quantum teleportation and wireless local area network Download PDFInfo
- Publication number
- CN108898708B CN108898708B CN201810639944.1A CN201810639944A CN108898708B CN 108898708 B CN108898708 B CN 108898708B CN 201810639944 A CN201810639944 A CN 201810639944A CN 108898708 B CN108898708 B CN 108898708B
- Authority
- CN
- China
- Prior art keywords
- access control
- terminal
- intelligent
- message
- quantum
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
- 239000002245 particle Substances 0.000 claims description 59
- 230000004044 response Effects 0.000 claims description 34
- 230000015654 memory Effects 0.000 claims description 33
- 230000009466 transformation Effects 0.000 claims description 16
- 238000005259 measurement Methods 0.000 claims description 13
- 238000012545 processing Methods 0.000 claims description 6
- 238000012986 modification Methods 0.000 claims description 5
- 230000004048 modification Effects 0.000 claims description 5
- 239000013598 vector Substances 0.000 claims description 4
- 238000004891 communication Methods 0.000 claims description 3
- 238000002360 preparation method Methods 0.000 claims description 3
- 239000013307 optical fiber Substances 0.000 claims description 2
- 230000002457 bidirectional effect Effects 0.000 claims 2
- 238000012546 transfer Methods 0.000 claims 1
- 238000013475 authorization Methods 0.000 description 2
- 238000012790 confirmation Methods 0.000 description 2
- 238000000034 method Methods 0.000 description 2
- 230000000903 blocking effect Effects 0.000 description 1
- 238000010586 diagram Methods 0.000 description 1
Images
Classifications
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07C—TIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
- G07C9/00—Individual registration on entry or exit
- G07C9/30—Individual registration on entry or exit not involving the use of a pass
- G07C9/38—Individual registration on entry or exit not involving the use of a pass with central registration
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/22—Parsing or analysis of headers
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0852—Quantum cryptography
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W48/00—Access restriction; Network selection; Access point selection
- H04W48/08—Access restriction or access information delivery, e.g. discovery data delivery
- H04W48/10—Access restriction or access information delivery, e.g. discovery data delivery using broadcasted information
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Electromagnetism (AREA)
- Theoretical Computer Science (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
本发明公开了基于量子隐形传态和无线局域网的智能门禁系统,系统包括智能钥匙终端、WIFI无线路由器和智能门禁终端。智能钥匙终端通过发现密钥获取在无线局域网中能够被该智能钥匙终端控制的智能门禁终端对应的设备编号信息,并把获取的所有设备编号信息保存在智能钥匙终端的在线智能门禁终端设备表中;然后,在获取可控智能门禁终端列表的基础上进一步通过量子密钥进行门禁状态设置,基于量子通信的方式确保传送的密钥无法被他人所窃取,提高无线局域网智能门禁系统的安全性能。
The invention discloses an intelligent access control system based on quantum teleportation and wireless local area network. The system includes an intelligent key terminal, a WIFI wireless router and an intelligent access control terminal. The smart key terminal obtains the device number information corresponding to the smart access control terminal that can be controlled by the smart key terminal in the wireless local area network by discovering the key, and saves all the acquired device number information in the online smart access control terminal device table of the smart key terminal ; Then, on the basis of obtaining the list of controllable intelligent access control terminals, the access control state is further set by quantum keys, and the quantum communication method ensures that the transmitted keys cannot be stolen by others, and improves the security performance of the wireless local area network intelligent access control system.
Description
技术领域technical field
本发明公开了基于量子隐形传态和无线局域网的智能门禁系统,属于物联网智能控制领域。The invention discloses an intelligent access control system based on quantum teleportation and wireless local area network, and belongs to the field of intelligent control of the Internet of Things.
背景技术Background technique
在无线智能门禁系统中,通过经典密钥完成门禁状态的修改存在一定的安全隐患;其采用的加密算法主要是依靠密钥来实现数据保护,一旦密钥在分发过程中被截获,无线智能门禁系统的安全性将无法得到保证。为了能够进一步提高基于无线局域网的智能门禁系统的安全性,本发明中提出了一种基于量子隐形传态和无线局域网的智能门禁系统,基于量子通信的方式确保传送的密钥无法被他人所窃取,改善无线局域网智能门禁系统的安全性能。In the wireless intelligent access control system, the modification of the access control state through the classic key has certain security risks; the encryption algorithm adopted mainly relies on the key to realize data protection. Once the key is intercepted during the distribution process, the wireless intelligent access control The security of the system will not be guaranteed. In order to further improve the security of the intelligent access control system based on wireless local area network, an intelligent access control system based on quantum teleportation and wireless local area network is proposed in the present invention, which ensures that the transmitted key cannot be stolen by others by means of quantum communication. , to improve the security performance of the wireless LAN intelligent access control system.
发明内容SUMMARY OF THE INVENTION
本发明提出的基于量子隐形传态和无线局域网的智能门禁系统,包括智能钥匙终端、WIFI无线路由器和智能门禁终端,智能钥匙终端通过WIFI无线路由器实现对智能门禁终端的智能控制,其中智能钥匙终端和WIFI无线路由器的连接为双向连接,WIFI无线路由器和智能门禁终端的连接为双向连接,智能门禁终端能够根据获得的智能钥匙终端的指令控制门锁的开闭;具体如附图1所示;作为优选,所述的WIFI无线路由器使用TP-LINK无线路由器;智能钥匙终端中的存储器分为经典存储器和量子存储器,智能门禁终端中的存储器分为经典存储器和量子存储器,智能钥匙终端的量子存储器为其控制的每一个智能门禁终端分配一个相应的量子存储空间;经典存储器保存经典比特数据,量子存储器存储经过制备得到的粒子。The intelligent access control system based on quantum teleportation and wireless local area network proposed by the present invention includes a smart key terminal, a WIFI wireless router and an intelligent access control terminal. The intelligent key terminal realizes the intelligent control of the intelligent access control terminal through the WIFI wireless router. The connection with the WIFI wireless router is a two-way connection, and the connection between the WIFI wireless router and the smart access control terminal is a two-way connection, and the smart access control terminal can control the opening and closing of the door lock according to the obtained instructions of the smart key terminal; as shown in Figure 1; Preferably, the WIFI wireless router uses a TP-LINK wireless router; the memory in the smart key terminal is divided into classical memory and quantum memory, the memory in the smart access control terminal is divided into classical memory and quantum memory, and the quantum memory of the smart key terminal is divided into A corresponding quantum storage space is allocated to each smart access control terminal it controls; the classical memory saves the classical bit data, and the quantum memory stores the prepared particles.
WIFI无线路由器建立自己的无线局域网,设置相应的接入密码,密码用PS表示;智能钥匙终端加入到该WIFI无线路由器所建立的无线局域网中;智能门禁终端使用密码PS加入到WIFI无线路由器所建立的无线局域网中。每一个智能门禁终端都拥有一个唯一的设备编号。The WIFI wireless router establishes its own wireless local area network, and sets the corresponding access password. The password is represented by PS; the smart key terminal is added to the wireless local area network established by the WIFI wireless router; the smart access control terminal uses the password PS to join the wireless local area network established by the WIFI wireless router. in the wireless local area network. Each smart access control terminal has a unique device number.
基于量子隐形传态和无线局域网的智能门禁系统各个组成部分通信时使用的报文类型有:门禁控制终端发现报文、门禁控制终端响应报文、门禁状态设置报文、门禁状态设置响应报文,报文格式见表1、表2、表3和表4;门禁控制终端发现报文由报文类型和发现秘钥两个字段构成,门禁控制终端响应报文由报文类型、设备编号和发现秘钥三个字段构成,门禁状态设置报文由报文类型、设备编号、量子序号、加密量子密钥和门禁状态五个字段构成,门禁状态设置响应报文由报文类型、设备编号、量子序号和加密量子密钥四个字段构成。The message types used in the communication of each component of the intelligent access control system based on quantum teleportation and wireless local area network are: access control terminal discovery message, access control terminal response message, access control state setting message, and access control state setting response message , the message format is shown in Table 1, Table 2, Table 3 and Table 4; the access control terminal discovery message consists of two fields: message type and discovery key, and the access control terminal response message consists of message type, device number and The discovery key consists of three fields. The access control state setting message consists of five fields: message type, device number, quantum serial number, encrypted quantum key, and access control state. The access control state setting response message consists of message type, device number, The quantum serial number and the encrypted quantum key are composed of four fields.
在线智能门禁终端设备表如表5所示,其包含设备编号1个字段,保存在智能钥匙终端的经典存储器中;智能钥匙终端通过发现密钥获取在无线局域网中能够被该智能钥匙终端控制的智能门禁终端对应的设备编号信息,并把获取的所有设备编号信息保存在智能钥匙终端的在线智能门禁终端设备表中;然后,在获取可控智能门禁终端列表的基础上进一步通过量子密钥进行门禁状态设置;通过发现密钥完成的第一级授权认证能够为我们提供可控智能门禁终端的设备列表信息,如果智能钥匙终端发现需要进行状态设置的门禁设备不在列表中,就不需要使用量子密钥进行第二步认证,从而能够有效节约纠缠粒子的消耗,具体步骤如下:The online smart access control terminal equipment table is shown in Table 5, which includes a field of equipment number, which is stored in the classic memory of the smart key terminal; The device number information corresponding to the smart access control terminal, and save all the obtained device number information in the online smart access control terminal device table of the smart key terminal; then, on the basis of obtaining the list of controllable smart access control terminals, the quantum key Access control status setting; the first-level authorization and authentication completed by the discovery key can provide us with the device list information of the controllable smart access control terminal. If the smart key terminal finds that the access control device that needs to be set is not in the list, there is no need to use quantum The key is authenticated in the second step, which can effectively save the consumption of entangled particles. The specific steps are as follows:
步骤1、在智能钥匙终端和其控制的所有智能门禁终端的经典存储器中预先保存一个相同的发现密钥CKEY,清空智能钥匙终端的在线智能门禁终端设备表;Step 1. Pre-save an identical discovery key CKEY in the classic memory of the smart key terminal and all smart access control terminals it controls, and clear the online smart access control terminal device table of the smart key terminal;
步骤2、智能钥匙终端从其经典存储器中取出发现密钥,用CKEY1表示;智能钥匙终端向其所在的无线局域网中以广播的方式发送门禁控制终端发现报文,该报文中报文类型的数值为0x01,发现密钥字段的数值设置为CKEY1;Step 2. The smart key terminal takes out the discovery key from its classic memory, which is represented by CKEY1; the smart key terminal broadcasts the access control terminal discovery message to the wireless local area network where it is located. The value is 0x01, and the value of the key field is found to be set to CKEY1;
步骤3,智能门禁终端收到广播报文后,按照报文格式对收到的报文进行解析,解析出报文各个字段的内容;Step 3, after receiving the broadcast message, the intelligent access control terminal parses the received message according to the message format, and parses the contents of each field of the message;
步骤4,如果智能门禁终端解析报文得到的报文类型的数值为0x01,则表示该报文为门禁控制终端发现报文;假定解析得到的发现密钥字段的数值用CKEY2表示,从该智能门禁终端的经典存储器中取出其预先保存的发现密钥,用CKEY3表示;如果CKEY2不等于CKEY3,则智能门禁终端直接将该报文丢弃,不再进行后续处理;如果CKEY2等于CKEY3,则执行步骤5;Step 4, if the value of the packet type obtained by the intelligent access control terminal parses the packet is 0x01, it means that the packet is an access control terminal discovery packet; assuming that the value of the discovery key field obtained by parsing is represented by CKEY2, from the intelligent access control terminal Take out the pre-saved discovery key from the classic memory of the access control terminal, which is represented by CKEY3; if CKEY2 is not equal to CKEY3, the intelligent access control terminal directly discards the message and does not perform subsequent processing; if CKEY2 is equal to CKEY3, perform the steps 5;
步骤5、智能门禁终端生成一个门禁控制终端响应报文,发送给智能钥匙终端;在生成的门禁控制终端响应报文中,报文类型的数值为0X02,设备编号的数值为智能门禁终端对应的设备编号,发现密钥的数值为CEKY3;Step 5. The smart access control terminal generates an access control terminal response message and sends it to the smart key terminal; in the generated access control terminal response message, the value of the message type is 0X02, and the value of the device number is the corresponding value of the smart access control terminal. Device number, the value of the discovery key is CEKY3;
步骤6、智能钥匙终端收到报文后,对该报文进行解析;如果智能钥匙终端解析得到的报文类型字段数值为0x02,表示该报文为门禁控制终端响应报文,智能钥匙终端针对收到的响应报文,按照门禁控制终端响应报文格式对报文进行解析,解析得到的设备编号字段用DN表示,解析得到的发现密钥字段用CKEY4表示,如果CKEY4等于CKEY1,则将设备编号DN加入智能钥匙终端的在线智能门禁终端设备表中;如果CKEY4不等于CKEY1,则丢弃此报文。Step 6. After the smart key terminal receives the message, it parses the message; if the value of the message type field obtained by the smart key terminal analysis is 0x02, it means that the message is an access control terminal response message, and the smart key terminal responds to the message. The received response message is parsed according to the response message format of the access control terminal. The device number field obtained by analysis is represented by DN, and the discovery key field obtained by analysis is represented by CKEY4. If CKEY4 is equal to CKEY1, the device The serial number DN is added to the online smart access control terminal device table of the smart key terminal; if CKEY4 is not equal to CKEY1, this message is discarded.
智能钥匙终端如果需要对设备编号为S的智能门禁终端进行门禁状态设置,在智能钥匙终端的在线智能门禁终端设备表中查找是否存在设备编号为S的记录,如果不存在,则智能钥匙终端无法对该智能门禁终端进行设置;如果存在,则通过门禁状态设置报文和门禁状态设置响应报文对智能门禁终端S完成门禁状态设置,针对智能门禁终端S完成门禁状态设置的具体步骤如下:If the smart key terminal needs to set the access control status of the smart access control terminal with the device number S, check whether there is a record with the device number S in the online smart access control terminal device table of the smart key terminal. If it does not exist, the smart key terminal cannot. Set the smart access control terminal; if it exists, complete the access control state setting for the smart access control terminal S through the access control state setting message and the access control state setting response message. The specific steps for completing the access control state setting for the smart access control terminal S are as follows:
步骤1、智能钥匙终端预先为某智能门禁终端S制备M个处于纠缠状态的量子对,其中第i个量子对的纠缠态为 ,且;其中每个量子对的第一个粒子由智能钥匙终端保存在其为智能门禁终端S预先分配的量子存储空间QS中,量子存储空间QS中保存的每个粒子都对应一个量子序号,每个量子对的第二个粒子由智能钥匙终端通过光纤分配给智能门禁终端S,由智能门禁终端S保存在自己的量子存储器内;假定智能门禁终端S对应的量子密钥设置为KEY1,智能钥匙终端和智能门禁终端S都已将该量子密钥KEY1预先保存在自己的经典存储器中;假定该量子密钥KEY1的长度为L1个字节,且L1等于4;Step 1. The smart key terminal prepares M quantum pairs in an entangled state for a smart access control terminal S in advance, wherein the entangled state of the i-th quantum pair is ,and ; The first particle of each quantum pair is stored by the smart key terminal in the quantum storage space QS pre-allocated for the smart access control terminal S, and each particle saved in the quantum storage space QS corresponds to a quantum serial number, and each The second particle of the quantum pair is distributed by the smart key terminal to the smart access control terminal S through the optical fiber, and the smart access control terminal S saves it in its own quantum memory; assuming that the quantum key corresponding to the smart access control terminal S is set to KEY1, the smart key terminal Both the quantum key KEY1 and the smart access control terminal S have pre-stored the quantum key KEY1 in their own classical memory; it is assumed that the quantum key KEY1 has a length of L1 bytes, and L1 is equal to 4;
步骤2、智能钥匙终端针对量子密钥KEY1共计8L1比特的数据分别制备8L1个相应的粒子,如果第i个比特为0,则制备得到粒子的量子态为 ;如果第i个比特为1,则制备得到粒子的量子态为;制备得到的粒子用表示,,;则,且,,;Step 2. The smart key terminal prepares 8L1 corresponding particles for the data of the quantum key KEY1 with a total of 8L1 bits. If the i-th bit is 0, the quantum state of the prepared particle is: ; If the i-th bit is 1, the quantum state of the prepared particle is ; the prepared particles are used express, , ;but ,and , , ;
步骤3、当智能钥匙终端需要对智能门禁终端S的门禁状态进行设置时,假定智能门禁终端S在智能钥匙终端量子存储空间QS中对应的最小的可用粒子序号为N;智能钥匙终端将制备得到的8L1个粒子和智能门禁终端S在智能钥匙终端量子存储空间QS中对应的序号为N到N+8L1-1的8L1个粒子执行贝尔测量,并将测量得到的结果作为加密量子密钥字段的数值封装到门禁状态设置报文中以广播的形式发送到该无线局域网中,该报文中报文类型字段的数值设置为0X03,设备编号字段的数值设置为S,量子序号字段的数值为N,门禁状态字段按照实际情况进行设置(门禁状态字段数值为1,表示开锁;门禁状态字段数值为0,表示闭锁);将智能钥匙终端量子存储空间QS中量子序号为N到N+8L1-1的粒子删除;对发送的门禁状态设置报文设置一个计时器T,并启动该计时器;如果在计时器T超时之前智能钥匙终端没有收到智能门禁终端S的门禁状态设置响应报文,则执行步骤2(计时器T超时可能是因为门禁状态设置报文丢失、迟到或者是门禁状态设置响应报文丢失、迟到引起的);如果在计时器T超时之前智能钥匙终端收到了智能门禁终端S的门禁状态设置响应报文,则执行步骤4;Step 3. When the smart key terminal needs to set the access control state of the smart access control terminal S, it is assumed that the minimum available particle number corresponding to the smart access control terminal S in the smart key terminal quantum storage space QS is N; the smart key terminal will prepare The 8L1 particles of the smart access control terminal S and the corresponding 8L1 particles with serial numbers from N to N+8L1-1 in the quantum storage space QS of the smart key terminal perform Bell measurement, and use the measurement results as the encrypted quantum key field. The value is encapsulated into the access control status setting message and sent to the wireless LAN in the form of broadcast. The value of the message type field in the message is set to 0X03, the value of the device number field is set to S, and the value of the quantum serial number field is N. , the access control status field is set according to the actual situation (the value of the access control status field is 1, which means unlocking; the value of the access control status field is 0, which means blocking); the quantum serial number in the quantum storage space QS of the smart key terminal is N to N+8L1-1 delete the particles; set a timer T for the sent access control status setting message, and start the timer; if the smart key terminal does not receive the access control status setting response message from the smart access control terminal S before the timer T times out, then Go to step 2 (timeout of timer T may be caused by the loss or late arrival of the access control status setting message or the loss or late arrival of the access control status setting response message); if the smart key terminal receives the smart access control terminal S before the timer T times out access control status setting response message, then go to step 4;
步骤4、智能门禁终端S收到广播报文后,通过对该报文进行解析,如果该报文的报文类型字段为0X03,则该报文为门禁状态设置报文,从该报文中解析出量子序号字段和加密量子密钥字段,解析得到的量子序号字段用N1表示;查询智能门禁终端S当前可用的最小的量子序号,用N2表示;如果N1>N2,则表明智能门禁终端S收到的报文是一个重发的门禁状态设置报文,则执行步骤5;如果N1<N2,则表明该报文为一个迟到的报文,直接丢弃就可以,不再进行后续处理;如果N1=N2,则执行步骤7;Step 4. After receiving the broadcast message, the smart access control terminal S analyzes the message. If the message type field of the message is 0X03, the message is an access control state setting message. Parse out the quantum serial number field and the encrypted quantum key field, and the obtained quantum serial number field is represented by N1; query the smallest quantum serial number currently available to the smart access control terminal S, represented by N2; if N1>N2, it indicates the smart access control terminal S If the received message is a retransmitted access control status setting message, go to step 5; if N1<N2, it means that the message is a late message, and it can be discarded directly without further processing; if N1=N2, then go to step 7;
步骤5、在智能门禁终端S的量子存储器中删除第N2个粒子,执行步骤6;Step 5. Delete the N2th particle in the quantum memory of the smart access control terminal S, and perform step 6;
步骤6、将N2的数值加1,如果N2<N1,则重复执行步骤5;如果N2=N1,执行步骤7;Step 6. Add 1 to the value of N2. If N2<N1, repeat step 5; if N2=N1, execute step 7;
步骤7、将智能门禁终端S解析得到的加密量子密钥字段以两个比特为单位按照顺序将16L1比特分成8L1对,每对中包含两个比特;假定,针对每对比特执行步骤8;Step 7. Divide the 16L1 bits into 8L1 pairs in order in units of two bits in the encrypted quantum key field obtained by the analysis of the smart access control terminal S, and each pair contains two bits; , perform step 8 for each pair of bits;
步骤8、如果第i对比特的数值为00,则对智能门禁终端S中保存的N2+i-1个粒子执行相应的幺正变换,;如果第N2+i-1对比特的数值为01,则对智能门禁终端S中保存的第N2+i-1个粒子执行相应的幺正变换,;如果第N2+i-1对比特的数值为10,则对智能门禁终端S中保存的第N2+i-1个粒子执行相应的幺正变换,;如果第i对比特的数值为11,则对智能门禁终端S中保存的第N2+i-1个粒子执行相应的幺正变换,;在智能门禁终端S中,将第N2+i-1个粒子删除;Step 8. If the value of the i-th pair of bits is 00, perform the corresponding unitary transformation on the N2+i-1 particles stored in the smart access control terminal S. , ; If the value of the N2+i-1 pair of bits is 01, then perform the corresponding unitary transformation on the N2+i-1 particle saved in the smart access control terminal S , ; If the value of the N2+i-1 pair of bits is 10, then perform the corresponding unitary transformation on the N2+i-1 particle saved in the smart access control terminal S , ; If the value of the i-th pair of bits is 11, then perform the corresponding unitary transformation on the N2+i-1th particle saved in the smart access control terminal S , ; in the smart access control terminal S, delete the N2+i-1th particle;
步骤9、对变换后的每个粒子依次按照基矢和进行测量,测量结果为表示相应比特为0;测量结果为表示相应比特为1;最终可以得到长度为L1个字节的量子密钥KEY2;Step 9. Follow the basis vector of each transformed particle in turn and to measure, the result is Indicates that the corresponding bit is 0; the measurement result is Indicates that the corresponding bit is 1; finally, a quantum key KEY2 with a length of L1 bytes can be obtained;
步骤10、智能门禁终端S从自己的经典存储器中取出预先保存的量子密钥KEY3,如果KEY2=KEY3,则对门禁状态进行修改,并返回给智能钥匙终端一个门禁状态设置响应报文,用于向智能钥匙终端报告门禁状态修改情况;智能门禁终端S将根据量子密钥KEY3的数据制备得到8L1个粒子,制备方法与步骤2相同;然后将制备得到的8L1个粒子和自己量子存储器中对应的序号为N2+8L1到N2+16L1-1的8L1个粒子执行贝尔测量,并将测量结果作为门禁状态设置响应报文的加密量子密钥字段,在门禁状态设置响应报文中,报文类型字段为0X04,设备编号字段设置为S,量子序号字段设置为N2+8L1;Step 10. The smart access control terminal S takes out the pre-saved quantum key KEY3 from its own classical memory. If KEY2=KEY3, the access control state is modified, and an access control state setting response message is returned to the smart key terminal for use in Report the access control status modification to the smart key terminal; the smart access control terminal S will prepare 8L1 particles according to the data of the quantum key KEY3, and the preparation method is the same as step 2; 8L1 particles with serial numbers from N2+8L1 to N2+16L1-1 perform Bell measurement, and use the measurement result as the encrypted quantum key field of the access control state setting response message. In the access control state setting response message, the message type field is 0X04, the device number field is set to S, and the quantum serial number field is set to N2+8L1;
步骤11、智能钥匙终端收到报文后,对该报文进行解析,如果该报文的报文类型字段为0X04,则该报文为门禁状态设置响应报文,从该报文中解析出加密量子密钥字段和量子序号字段,解析得到的量子序号字段用N3表示;查询智能钥匙终端当前可用的最小的量子序号,用N4表示;如果N3<N4,则表明智能钥匙终端收到的确认报文是一个迟到的确认报文,则直接丢弃就可以,不再进行后续处理;如果N3=N4,则执行步骤12;Step 11. After receiving the message, the smart key terminal parses the message. If the message type field of the message is 0X04, the message is an access control status setting response message, and the message is parsed from the message. Encrypt the quantum key field and quantum serial number field, and the quantum serial number field obtained by parsing is represented by N3; query the smallest quantum serial number currently available to the smart key terminal, represented by N4; if N3<N4, it indicates the confirmation received by the smart key terminal If the message is a late confirmation message, it can be discarded without further processing; if N3=N4, go to step 12;
步骤12、智能钥匙终端解析得到的加密量子密钥字段数据以两个比特为单位按照顺序将16L1比特分成8L1对,每对中包含两个比特;假定,针对每对比特执行步骤13;Step 12: The encrypted quantum key field data parsed by the smart key terminal divides the 16L1 bits into 8L1 pairs in order in units of two bits, and each pair contains two bits; , perform step 13 for each pair of bits;
步骤13、如果第i对比特的数值为00,则对智能钥匙终端的量子存储空间QS中保存的N4+i-1个粒子执行相应的幺正变换,;如果第N4+i-1对比特的数值为01,则对智能钥匙终端的量子存储空间QS中保存的第N4+i-1个粒子执行相应的幺正变换,;如果第N4+i-1对比特的数值为10,则对智能钥匙终端的量子存储空间QS中保存的第N4+i-1个粒子执行相应的幺正变换,;如果第i对比特的数值为11,则对智能钥匙终端的量子存储空间QS中保存的第N4+i-1个粒子执行相应的幺正变换,;在智能钥匙终端的量子存储空间QS中,将第N4+i-1个粒子删除;Step 13. If the value of the i-th pair of bits is 00, perform the corresponding unitary transformation on the N4+i-1 particles stored in the quantum storage space QS of the smart key terminal. , ; If the value of the N4+i-1 pair of bits is 01, perform the corresponding unitary transformation on the N4+i-1 particle saved in the quantum storage space QS of the smart key terminal , ; If the value of the N4+i-1th pair of bits is 10, perform the corresponding unitary transformation on the N4+i-1th particle stored in the quantum storage space QS of the smart key terminal , ; If the value of the i-th pair of bits is 11, perform the corresponding unitary transformation on the N4+i-1th particle saved in the quantum storage space QS of the smart key terminal , ; in the quantum storage space QS of the smart key terminal, delete the N4+i-1th particle;
步骤14、对变换后的每个粒子依次按照基矢和进行测量,测量结果为表示相应比特为0;测量结果为表示相应比特为1;最终可以得到长度为L1个字节的量子密钥KEY5;Step 14. Follow the basis vector of each transformed particle in turn and to measure, the result is Indicates that the corresponding bit is 0; the measurement result is Indicates that the corresponding bit is 1; finally, the quantum key KEY5 with a length of L1 bytes can be obtained;
步骤15、如果KEY5等于KEY1,则接收到的量子密钥正确,智能钥匙终端成功修改了智能门禁终端S的门禁状态;如果KEY5不等于KEY1,则接收到的量子密钥不正确,直接丢弃该报文,门禁状态修改失败。Step 15. If KEY5 is equal to KEY1, the received quantum key is correct, and the smart key terminal successfully modifies the access control status of the smart access control terminal S; if KEY5 is not equal to KEY1, the received quantum key is incorrect, and it is discarded directly. message, access control status modification failed.
附图说明Description of drawings
图1是基于量子隐形传态和无线局域网的智能门禁系统结构图。Figure 1 is a structural diagram of an intelligent access control system based on quantum teleportation and wireless local area network.
具体实施方式Detailed ways
智能钥匙终端通过发现密钥获取在无线局域网中能够被该智能钥匙终端控制的智能门禁终端对应的设备编号信息,并把获取的所有设备编号信息保存在智能钥匙终端的在线智能门禁终端设备表中;然后,在获取可控智能门禁终端列表的基础上进一步通过量子密钥进行门禁状态设置;通过发现密钥完成的第一级授权认证能够为我们提供可控智能门禁终端的设备列表信息,如果智能钥匙终端发现需要进行状态设置的门禁设备不在列表中,就不需要使用量子密钥进行第二步认证,从而能够有效节约纠缠粒子的消耗。The smart key terminal obtains the device number information corresponding to the smart access control terminal that can be controlled by the smart key terminal in the wireless local area network by discovering the key, and saves all the acquired device number information in the online smart access control terminal device table of the smart key terminal ; Then, on the basis of obtaining the list of controllable smart access control terminals, the access control state setting is further carried out through the quantum key; the first-level authorization and authentication completed by discovering the key can provide us with the device list information of the controllable smart access control terminal, if When the smart key terminal finds that the access control device that needs to be set is not in the list, it does not need to use the quantum key for the second-step authentication, which can effectively save the consumption of entangled particles.
智能钥匙终端如果需要对设备编号为S的智能门禁终端进行门禁状态设置,在智能钥匙终端的在线智能门禁终端设备表中查找是否存在设备编号为S的记录,如果不存在,则智能钥匙终端无法对该智能门禁终端进行设置;如果存在,则通过门禁状态设置报文和门禁状态设置响应报文对智能门禁终端S完成门禁状态设置。If the smart key terminal needs to set the access control status of the smart access control terminal with the device number S, check whether there is a record with the device number S in the online smart access control terminal device table of the smart key terminal. If it does not exist, the smart key terminal cannot. Set the smart access control terminal; if it exists, complete the access control state setting for the smart access control terminal S through the access control state setting message and the access control state setting response message.
Claims (3)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201810639944.1A CN108898708B (en) | 2018-06-21 | 2018-06-21 | Smart access control system based on quantum teleportation and wireless local area network |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201810639944.1A CN108898708B (en) | 2018-06-21 | 2018-06-21 | Smart access control system based on quantum teleportation and wireless local area network |
Publications (2)
Publication Number | Publication Date |
---|---|
CN108898708A CN108898708A (en) | 2018-11-27 |
CN108898708B true CN108898708B (en) | 2020-12-29 |
Family
ID=64345263
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201810639944.1A Expired - Fee Related CN108898708B (en) | 2018-06-21 | 2018-06-21 | Smart access control system based on quantum teleportation and wireless local area network |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN108898708B (en) |
Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
GB2430850B (en) * | 2005-09-29 | 2010-12-01 | Hewlett Packard Development Co | Method and system using one-time pad data to evidence the possession of a particular attribute |
CN106686866A (en) * | 2017-02-20 | 2017-05-17 | 河南理工大学 | Multimedia classroom intelligent lighting control system based on WIFI and smart phone |
CN107070796A (en) * | 2017-02-20 | 2017-08-18 | 河南理工大学 | A kind of adaptive RIP routing protocols based on quantum teleportation |
CN107483189A (en) * | 2017-08-08 | 2017-12-15 | 河南理工大学 | A quantum cipher lock system based on quantum entanglement |
CN107689866A (en) * | 2017-08-28 | 2018-02-13 | 河南理工大学 | It is a kind of based on the quantum cryptography lock system tangled particle and compensated automatically |
CN107911211A (en) * | 2017-10-23 | 2018-04-13 | 浙江神州量子网络科技有限公司 | Quick Response Code Verification System based on quantum communication network |
CN108183797A (en) * | 2018-01-05 | 2018-06-19 | 浙江科易理想量子信息技术有限公司 | A kind of quantum cryptography locks implementation method |
-
2018
- 2018-06-21 CN CN201810639944.1A patent/CN108898708B/en not_active Expired - Fee Related
Patent Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
GB2430850B (en) * | 2005-09-29 | 2010-12-01 | Hewlett Packard Development Co | Method and system using one-time pad data to evidence the possession of a particular attribute |
CN106686866A (en) * | 2017-02-20 | 2017-05-17 | 河南理工大学 | Multimedia classroom intelligent lighting control system based on WIFI and smart phone |
CN107070796A (en) * | 2017-02-20 | 2017-08-18 | 河南理工大学 | A kind of adaptive RIP routing protocols based on quantum teleportation |
CN107483189A (en) * | 2017-08-08 | 2017-12-15 | 河南理工大学 | A quantum cipher lock system based on quantum entanglement |
CN107689866A (en) * | 2017-08-28 | 2018-02-13 | 河南理工大学 | It is a kind of based on the quantum cryptography lock system tangled particle and compensated automatically |
CN107911211A (en) * | 2017-10-23 | 2018-04-13 | 浙江神州量子网络科技有限公司 | Quick Response Code Verification System based on quantum communication network |
CN108183797A (en) * | 2018-01-05 | 2018-06-19 | 浙江科易理想量子信息技术有限公司 | A kind of quantum cryptography locks implementation method |
Non-Patent Citations (1)
Title |
---|
连续变量量子保密通信实验研究;代文超;《中国优秀硕士学位论文全文数据库信息科技辑》;20120731;全文 * |
Also Published As
Publication number | Publication date |
---|---|
CN108898708A (en) | 2018-11-27 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN110377002B (en) | An adaptive in-vehicle CAN bus safety control method and system | |
US11146400B2 (en) | Methods for verifying data integrity | |
Parne et al. | Segb: Security enhanced group based aka protocol for m2m communication in an iot enabled lte/lte-a network | |
KR101229703B1 (en) | Anonymous authentication method based on pre-shared cipher key, reader-writer, electronic tag and system thereof | |
US7370350B1 (en) | Method and apparatus for re-authenticating computing devices | |
JP4347335B2 (en) | Network relay program, network relay device, communication system, and network relay method | |
CN101056177B (en) | A wireless mesh network re-authentication method based on WAPI security standard | |
CN111181912B (en) | Browser identifier processing method and device, electronic equipment and storage medium | |
WO2022127434A1 (en) | Wireless local area network authentication method and apparatus, and electronic device and storage medium | |
CN106953855B (en) | Method for intrusion detection of GOOSE message of IEC61850 digital substation | |
CN104837150B (en) | IPv6 wireless sense network safety test systems | |
CN111565389B (en) | Node management method, device, equipment and storage medium | |
CN104363593B (en) | Top-k inquiry processing methods are can verify that towards two layers sensor network | |
CN108990062A (en) | Intelligent and safe Wi-Fi management method and system | |
CN105682089A (en) | Data protection method and device based on fragments | |
CN110868294A (en) | Key updating method, device and equipment | |
CN117395001B (en) | Internet of vehicles secure communication method and system based on quantum key chip | |
Choi et al. | Dissecting customized protocols: automatic analysis for customized protocols based on IEEE 802.15. 4 | |
CN116170806A (en) | Smart power grid LWM2M protocol security access control method and system | |
CN105721161B (en) | A kind of H based on bus2- MAC message authentication IP kernel hardware devices | |
CN104717644A (en) | Two-tiered wireless sensor network range query method capable of verifying privacy protection | |
CN105847009A (en) | RFID bidirectional authentication method meeting requirement on backward security | |
CN108898708B (en) | Smart access control system based on quantum teleportation and wireless local area network | |
WO2007035461A2 (en) | Changing states of communication links in computer networks in an authenticated manner | |
CN115085926A (en) | Data acquisition method and system based on block chain and Internet of things data aggregation gateway |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20201229 Termination date: 20210621 |
|
CF01 | Termination of patent right due to non-payment of annual fee |