›› 2013, Vol. 31 ›› Issue (3): 23-26.
• Civil Aviation • Previous Articles Next Articles
WU Zhi-jun,JIA Yue-lin
Received:
Revised:
Online:
Published:
Abstract:
Aircraft Communication Addressing and Reporting System (ACARS)is the main method of communication in civil aviation of China. ACARS air-ground datalink is quite important for aviation security,while the datalink system is not secure enough since lacking of adequate research on it. With regard to the shortcuts of entity authentication method in ACARS,and on the basis of analyzing the risks existing in the datalink,this paper studies the digital certificate authentication method based on the elliptic curve cryptography during the secure session initiation process between the ground and aircraft entity,then designs and implements a certificate authority for signing and managing certificates based on OpenSSL in aviation ground-air datalink,and finally completes the authentication between ground and aircraft before the secure session. Analyses show that the digital certificate authentication method used in ACARS improves the security of the system,without impacting on system performance.
Key words: aircraft communication addressing and reporting system(ACARS), digital certificate, authentication, elliptic curve
CLC Number:
TN918.91
WU Zhi-jun,JIA Yue-lin. Research on digital certificate in ACARS ground-air datalink[J]. , 2013, 31(3): 23-26.
0 / / Recommend
Add to citation manager EndNote|Reference Manager|ProCite|BibTeX|RefWorks
URL: https://www.cauc.edu.cn/jweb_cauc/EN/
https://www.cauc.edu.cn/jweb_cauc/EN/Y2013/V31/I3/23
[1] ACARS.官方文档[G]:http://www.arinc.com/products/voice_data_comm/ACARS.html.[2] ARINC 823P1-2007,Data link security part2-ACARS message security[S]. Annapolis:Aeronautical Radio,Inc,2007.[3] ARINC 823P1-2007,Data link security part1-ACARS message security[S]. Annapolis:Aeronautical Radio,Inc,2008.[4] 王晓琳,张学军,何葭. ACARS 数据链中的安全通信[J].航空电子技术,2003,34(z1):95-100.[5] 张方国,王常杰,王育民,等.基于椭圆曲线的数字签名与盲签名[J].通信学报,2001,22(8):22-28.[6] HOUSLEY R. RFC 2459 - Internet X.509 Public Key InfrastructureCertificate and CRL Profile [G]. ISOC:January 1999.[7] 许平. 基于X.509标准的CA数字证书系统的设计与实现[J]. 计算机与数字工程,2011,39(9):95-97,167.[8] 赫威,陈谦,李鑫,等. 浅析电子数字证书签发系统[J]. 黑龙江科技信息,2011(20):77.[9] 王志海,童新海,沈寒辉. OpenSSL 与网络信息安全—基础、结构和指令[M]. 北京:清华大学出版社,北京交通大学出版社,2007:100-127.[10] 关振胜.公钥基础设施PKI 及其应用[M] .北京:电子工业出版社,2008.