Login| Sign Up| Help| Contact|

Patent Searching and Data


Title:
APPLICATION OF KEY EXCHANGE BASED PHYSICAL LAYER SECURITY METHODS
Document Type and Number:
WIPO Patent Application WO/2020/162856
Kind Code:
A1
Abstract:
The invention is related to a method that makes modifications during the key phase of physical layer security methods and which enables said methods to be applicable in wireless communication.

Inventors:
YILMAZ ALI (TR)
KARABULUT KURT GUNES ZEYNEP (TR)
Application Number:
PCT/TR2020/050071
Publication Date:
August 13, 2020
Filing Date:
February 04, 2020
Export Citation:
Click for automatic bibliography generation   Help
Assignee:
UNIV ISTANBUL TEKNIK (TR)
International Classes:
H04L9/08; H04K1/00; H04L9/00; H04L9/06; H04L27/26
Foreign References:
CN101309249A2008-11-19
CN106452731A2017-02-22
US7424615B12008-09-09
Attorney, Agent or Firm:
CANKAYA PATENT MARKA VE DANISMANLIK LIMITED SIRKETI (TR)
Download PDF:
Claims:
CLAIMS

1. The invention is a method that enables physical layer security method to be applied in wireless communication by making changes during the key phase and that comprises the step of generating a K common key; comprising the following steps to be carried out at the modulator during the data transmission phase;

dividing the equivalent of the K key number in a binary system into n equal parts and converting this n number in the binary system into its equivalent and generating an n key equation (V) (202),

(111011 )¾ ® i Kn Jiff ( Y) - establishing a chip sequence by means of a PN (Pseudo Noise) sequence generator according to any of the Kn keys that have been generated for the direct sequence spread spectrum (203),

converting the bit sequence that is desired to be transmitted by the transmitter from serial format to parallel format by grouping before the modulation process (204),

converting the bit sequence that has been previously converted to parallel format, into an electromagnetic waveform such as in equation VI which represents the bit sequence (205), a. ew (VI), a :the amplitude of the wave to be transmitted, 0:wave phase applying a constellation rotation security method by adding the Kn number known by the transmitter and the receiver, that represents a key function with equation VII to the phase of the waveforms transmitted (207), a e i(9+Kn) (VII), wherein: 0< Kn<360 establishing an RRC filter according to any of the Kn keys that have been generated in order to apply the filter based security method (207), passing the waveform from the low pass filter that has been formed (208), preventing the listener from obtaining the data transmitted by applying a frequency hopping method according to any one of the Kn keys that have been generated (209), characterized by comprising the process steps of, carrying out the below- mentioned processes at demodulator in order for the receiver to correctly demodulate the signal transmitted by the transmitter during the data transmission stage; dividing the equivalent of the K key number in a binary system into n equal parts and converting this n number in the binary system into its equivalent and generating an n key equation (V) (302),

demodulating of the symbol by the receiver, where the transmitter applies frequency hopping with the Knkey used in step number 209 (303),

Establishing a low pass filter according to the Kn number used in step 207 (304),

passing the waveform from the low pass filter that has been formed (305), taking out the Kn key in step 206 from the waveform phases applied with constellation rotation at the transmitter and converting it to its original state by means of a reverse constellation rotation carried out at the transmitter (306), selecting the demodulation type of original waveforms according to modulation type, in accordance with the Knkey that is used in step 205 (307), changing the bit sequence that has been obtained in step 307 from parallel format into a serial format (308),

establishing a chip sequence according to Kn number used in step 203 in order to obtain a data sequence for which a direct sequence spread spectrum is applied (309).

2. A method according to claim 1, characterized in that the K common key comprises the process steps of:

the authorized transmitter decides on the a, g and p numbers and generates an open key (A) from these numbers with the equation I and the authorized receiver decides on the b number (101),

A= gamodp (I), the authorized transmitter transmits the A, g and p numbers to the authorized receiver (102), the authorized receiver generates its own open key (B) from the b, g and p numbers using equation II (103),

B= gbmodp (II), the authorized receiver transmits the B number to the authorized transmitter (104), - the K common key is formed at the modulator and the demodulator by the authorized transmitter using equation III and by the authorized receiver using equation IV (105).

K= Bamodp (HI),

K= Abmodp (IV).

Description:
APPLICATION OF KEY EXCHANGE BASED PHYSICAL LAYER

SECURITY METHODS Technical Field

The invention provides a new point of view regarding the application of physical layer security methods. In the prior art, the key sharing phase in physical layer security methods is carried out with cryptographic methods. The most basic cryptographic method used is the Diffie-Hellman Key exchange protocol. Prior Art

The importance of the data transmitted gains importance every single day, together with the improvement in technology. As a result of this situation, it has become crucially important to provide security in wireless communication. New security methods are being searched for the invention. The security methods that are applied in wireless communication are cryptography methods in the 2nd, 3rd and 7th layers of the OSI reference model. Physical layer security methods that can be used in wireless communication in addition to cryptography methods in order to provide security for the data transmitted are still being searched. Some examples of such security methods are constellation rotation, Chaotic Direct Sequence Spread Spectrum (DSSS), modulation type selection, frequency hopping, and filter-based methods. It is prevented by listeners from obtaining data transmitted by applying these methods during data transmission.

Direct Sequence Spread Spectrum (DSSS)

Direct Sequence Spread Spectrum technology (DSSS), increases the resilience of data against factors that may increase error rate such as interference and noise, by subjecting the data to an XOR process with the data sequence, also referred to as the bit sequence, which is formed of a higher number of bits than those submitted by the transmitter.

In Figure 1, the DSSS process can be seen. The bit sequence that is to be transmitted is represented with a bit sequence that is several times the bit propagation factor (In this example 4 times) by carrying out XOR.

The DSSS demodulation process that is carried out at the receiver can be observed in Figure 2. The receiver obtains the bit sequence that the transmitter desired to transmit by subjecting the data sequence obtained by the chip sequence to the XOR process.

A chip sequence having a length determined by the PN (Pseudo Noise) sequence generator is established, the PN generates the sequence generator sequences according to a determined number and this number is one of the generated Kn keys. If the transmitter and the receiver do not have the same chip sequence in DSSS, the receiver cannot obtain the signal transmitted by the transmitter correctly. Thereby the listener is prevented from obtaining a data sequence by means of the chaotic DSSS security method, as the listener does not know the chip sequence. A chip sequence having a determined length is generated by the PN (Pseudo Noise) sequence generator of the transmitter and receiver, and the PN sequence generator generates its sequences according to a determined number. This chip sequence is established according to a key number generated by the authorized transmitter and receiver, secretly from the listener. The unauthorized users that do not have a key cannot obtain the bit sequence transmitted by the transmitter.

Modulation Type Selection

The transmitter transmits the bit sequence that is desired to transmit in communication systems, to the receiver by converting the bit sequence into a representative electromagnetic waveform. This process is called modulation. The bit number and the amplitude and phase of the waveform that is represented with a wave are changed according to modulation types. The exemplary modulation types and the number of bits representing the waveforms in modulation types is 2 for 4- QAM, 3 for 8-QAM and 4 for 16-QAM. The transmitter groups the bit sequences according to modulation types before the modulation process. This process is called “serial to parallel”. The amplitude and phase of the waveform that is transmitted are also changed besides the number of bits that are represented. The modulation types used in wireless communication is fixed. The receiver knows the type of modulation transmitted by the transmitter and demodulates the signal that is transmitted accordingly. The principle aim in selecting the modulation type is to prevent the demodulation of data by listeners who do not know the modulation type. When channel losses are added to the transmitted waveforms, the listener cannot demodulate the wave that is transmitted. The critical point in such a security method is that the transmitter shall transmit the modulation type that is to be used by the receiver, secretly from the listener. The common key number that is to be generated with the authorized receiver at the key sharing phase prior to data transmission by the receiver shall be the indicator of the modulation type that is to be used.

Constellation Rotation

The waveforms that represent the bit sequences are illustrated as below, according to their amplitude and phases.

a. e lG a represents the amplitude of the wave to be transmitted, Q represents the wave phase. For example, the waveforms transmitted for 4-QAM modulation are 1. e l45 °, 1. e ll35 °, 1. e l225 °, 1. e l315 ° . The transmitter adds the same amount of phase to the waveforms during the constellation rotation process.

The transmitter adds the K number that functions as a key and that is also known by the receiver to the phase of the waveforms. The authorized receiver subtracts this K number from the obtained waveforms and converts the waveforms correctly into the related bit sequence. The listeners that do not know the K number cannot obtain the bit sequences correctly. As a result of this process that is called the constellation rotation, the constellation of the authorized receiver and authorized transmitter is changed according to figure 4. The K key can be a value between 0 - 360.

a e i{9+K)

Filter-Based Physical Layer Security Methods The transmitter and receiver filter the signal in order to increase the reception performance of the signal by the receiver and to prevent interferences. The structure of the receiver filter and the transmitter filter are connected to each other. The complex conjugation of the transmitter filter is selected in order to minimize interference at the receiver. This concept is called the matched filter. The filters used by the receiver and transmitter in wireless communication systems are called Root Raised Cosine (RRC) filters. The complex conjugation of the coefficients of an RRC filter is the RRC filter itself. RRC filters have a definitive parameter; attenuation factor (b). The coefficients of the RRC filters change according to the attenuation factor. The attenuation factor is a value between 0 and 1. When the attenuation factor of RRC filters of the receiver and transmitter are the same, the signal reception quality of the receiver increases. The aim of filter-based security methods is to reduce the performance of listeners without affecting the performance of the authorized receiver by changing the attenuation factor of authorized users such that they are parallel with each other. The authorized users decide which attenuation factor to use, with the common K key number that they share in secret from the listener.

Frequency Flopping

After the waveform is passed through the low pass filter in the modulator diagram, it is carried to the w c frequency and the same frequency is used during the entire transmission. Using the same frequency during the entire transmission enables the communication between the receiver and the transmitter to be perceived by the listener. During the frequency hopping process the transmitter changes the frequencies it used during the entire transmission and the transmitter prevents the data transmitted to be obtained by the listener. The receiver knows which frequency shall be used by the transmitter within which time intervals by means of the common key number generated during the key generation phase. Each key number corresponds to a different frequency hopping model. The transmitter applies the frequency hopping procedure according to the frequency hopping model corresponding to the key number.

All of the mentioned physical layer security methods are formed of two phases. These are the key sharing phase and the data transmission phase. In order to ensure that the authorized receiver is not affected by security methods, the methods are applied according to a key number. This key sharing is carried out before the methods are applied. Following this, these methods are applied during data transmission.

In the prior art, the authorized receiver and the transmitter transmits a pilot symbol to each other within the consistency time of the channel during key sharing. The effect of the channel on pilot symbols is the same. The authorized users can find this effect as they know the pilot symbols. They generate a common key by using the phase or amplitude of the channel effect phase.

In the United States Patent document numbered US5604806A of the prior art, a technique for generating a key from a channel between two authorized users has been disclosed. In the invention, the authorized users transmit pilot symbols to each other. The users calculate the effect of the channel on the pilot symbol amplitude or phase. As it shall be equal with the signals that are transmitted during the consistency time of the channel, a common key can be generated. As the listener cannot access the effect of the channel to the pilot symbol, transmitted between authorized users, the listener cannot obtain the common key that is generated.

In the United States Patent document numbered US5604806A of the prior art, security is provided between authorized users by carrying rotation of waveforms in a constellation diagram. The rotation process is carried out by shifting the complex waveform phases following the conversion of dual sequences to corresponding complex waveforms in the constellation map. The listener who does not know the amount of phase shift, cannot convert the complex waveforms into bit sequences correctly.

In the International patent document numbered CN105916139A of the prior art a relay security method has been developed. The relay is located at a point between the transmitter and the receiver in wireless communication and it received the signal transmitted by the transmitter, it strengthens it and transmits it to the receiver. Relays can obtain the waveform transmitted by the transmitter and re -transmit it; however, they cannot reach the data sequence that is desired to be transmitted. This security method provides a proper solution against bad intentioned relays.

In the International patent document numbered US2012036362 of the known state of the art a novel key exchange protocol is disclosed. Key production methods are not used for generating a common key in physical layer security methods.

In the International patent document numbered US2010153727 of the known state of the art a method that has been developed for secure direct communication between two users is disclosed. This document describes a method of establishing a secure direct communication under medium access control and discloses the application of the Diffie Heilman key exchange protocol in order for the base station not to have a key that is formed between two users. The usage of the generated key for physical layer security methods is not disclosed.

The channel-based key generation methods of the prior art are techniques that theoretically operate smoothly. The consistency time of the channel cannot be determined and in reality, it has an effect that changes according to the frequency of the channel. As a result, it is highly likely for the authorized users to generate a different key. In the studies carried out in the literature, these issues have been disregarded. A common key cannot be generated in multi-receiver communication by means of the channel -based key generation technique. Another common key generation technique for generating a key for said physical layer security methods is not available aside from the channel-based key generation techniques.

Aims of the invention The aim of the invention to make modifications during the key phase of physical layer security methods and to enable these methods to be applied in wireless communication.

Detailed Description of the Invention

The method provided in order to reach the aims of the invention has been illustrated below.

In the drawings:

Figure 1: Is the representative DSSS modulation process that is carried out in the prior art. The bit sequence that is to be transmitted is represented with a bit sequence that is several times the bit propagation factor (In this example 4 times) by carrying out XOR.

Figure 2: Is the representative DSSS demodulation process that is carried out at the receiver. The receiver obtains the bit sequence that the transmitter desired to transmit by subjecting the data sequence obtained by the chip sequence to the XOR process. Figure 3: Is the representative constellation rotation of the prior art.

Figure 4: Is the representative view of the frequency hopping method carried out in the prior art.

Figure 5: Is the schematic view of the Diffie Heilman key exchange protocol. Figure 6: Is the representative view of the process steps that are carried out at the modulator by means of the method subject to the invention.

Figure 7: Is the representative view of the process steps that are carried out at the demodulator by means of the method subject to the invention. The weak point of the security methods of the prior art and the inapplicability of such methods is caused by the key generation stage. This stage is carried out with channel-based key generation methods in the prior art. In this invention, the Diffie Heilman method that is used in cryptography methods has been used

a: Secret key of the authorized transmitter

g: Base prime number

p: Mode prime number

A: The open key of the authorized transmitter

b: Authorized receiver secret key

B : Authorized receiver open key

K: Common key

The Diffie Heilman key exchange protocol at the stage of key generation can be applied according to a classic application technique.

The authorized transmitter decides on the a, g and p numbers and generates an open key (A) from these numbers with the equation I and the authorized receiver decides on the b number (101),

A= g a modp (I),

The authorized transmitter transmits the A, G and p numbers to the authorized receiver (102), - The authorized receiver generates its own open key (B) from the b, g and p numbers using equation II (103),

B= g b modp (II), The authorized receiver transmits the B number to the authorized transmitter (104),

The K common key is formed at the modulator and the demodulator by the authorized transmitter using equation III and by the authorized receiver using equation IV (105).

K= B a modp (III),

K= A b modp (IV),

A common key can be generated for physical layer security methods even in multiple receiver communications for group communications, by using group key exchange protocols that have been derived from the Diffie Heilman key generation technique.

The below-mentioned steps are carried out at the blocks of the modulators during the data transmission stage following the K key generation stage.

Dividing the equivalent of the K key number in a binary system into n equal parts and converting this n number in the binary system into its equivalent and generating an n key equation (V) (202),

Establishing a chip sequence by means of a PN (Pseudo Noise) sequence generator according to any of the K n keys that have been generated for the direct sequence spread spectrum (203),

Converting the bit sequence that is desired to be transmitted by the transmitter from serial format to parallel format by grouping before the modulation process (204),

Converting the bit sequence that has been previously converted to parallel format, into an electromagnetic waveform such as in equation VI which represents the bit sequence (205), a. e w (VI), a: the amplitude of the wave to be transmitted, Q: phase of the wave

Applying a constellation rotation security method by adding the K n number known by the transmitter and the receiver, that represents a key function with equation VII to the phase of the waveforms transmitted (207), a. e^ e+Kn ^ (VII), wherein: 0< K n <360

An RRC filter is established according to any of the K n keys that have been generated in order to apply the filter based security method (207),

Passing the waveform from the low pass filter that has been formed (208), - Preventing the listener from obtaining the data transmitted by applying a frequency hopping method according to any one of the K n keys that have been generated (209).

The below-mentioned processes are carried out at the blocks of the demodulator in order for the receiver to correctly demodulate the signal transmitted by the transmitter during the data transmission stage following the key generation stage. Dividing the equivalent of the K key number in a binary system into n equal parts and converting this n number in the binary system into its equivalent and generating an n key equation (V) (302),

Demodulating of the symbol by the receiver, where the transmitter applies frequency hopping with the K n key used in step number 209 (303),

Establishing a low pass filter according to the K n number used in step 207 (304),

Passing the waveform from the low pass filter that has been formed (305), Taking out the K n key in step 206 from the waveform phases applied with constellation rotation at the transmitter and converting it to its original state by means of a reverse constellation rotation carried out at the transmitter (306), selecting the demodulation type of original waveforms according to modulation type, in accordance with the K n key that is used in step 205 (307), changing the bit sequence that has been obtained in step 307 from parallel format into a serial format (308),

Establishing a chip sequence according to K n number used in step 203 in order to obtain a data sequence for which a direct sequence spread spectrum is applied (309).