CN109388968B - Lightweight Internet of things terminal system based on block chain and control method thereof - Google Patents

Lightweight Internet of things terminal system based on block chain and control method thereof Download PDF

Info

Publication number
CN109388968B
CN109388968B CN201811224065.9A CN201811224065A CN109388968B CN 109388968 B CN109388968 B CN 109388968B CN 201811224065 A CN201811224065 A CN 201811224065A CN 109388968 B CN109388968 B CN 109388968B
Authority
CN
China
Prior art keywords
internet
block chain
things
node
terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201811224065.9A
Other languages
Chinese (zh)
Other versions
CN109388968A (en
Inventor
李华生
范渊
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou Dbappsecurity Technology Co Ltd
Original Assignee
Hangzhou Dbappsecurity Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou Dbappsecurity Technology Co Ltd filed Critical Hangzhou Dbappsecurity Technology Co Ltd
Priority to CN201811224065.9A priority Critical patent/CN109388968B/en
Publication of CN109388968A publication Critical patent/CN109388968A/en
Application granted granted Critical
Publication of CN109388968B publication Critical patent/CN109388968B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • G06F21/6272Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database by registering files or documents with a third party

Abstract

The invention relates to a block chain-based lightweight Internet of things terminal system and a control method thereof. According to the invention, the characteristics of small storage space, weak computing capacity and the like of the lightweight Internet of things terminal are combined, secondary management is formed by utilizing the Internet of things terminal nodes and the block chain nodes, the Internet of things terminal nodes report local threat events and receive security strategies from the block chain nodes, and threat information is exchanged through the block chain technology while threat information of the managed Internet of things terminal nodes is received among the block chain nodes, so that the block chain technology is fully applied to the scene of Internet of things security.

Description

Lightweight Internet of things terminal system based on block chain and control method thereof
Technical Field
The invention relates to the technical field of digital information transmission, such as telegraph communication, in particular to a block chain-based lightweight Internet of things terminal system and a control method thereof.
Background
With the rapid rise of the technology of the internet of things, the application of the internet of things is endless. The traditional internet of things safety scheme has the working process that the internet of things terminal collects local safety events and reports the local safety events to the central management node, the central management node carries out overall analysis on all information, and after new threats are found, a new safety strategy is issued to all nodes.
For an internet of things system, the security of a terminal is an important link, a traditional internet of things security scheme cannot guarantee real-time sharing of threat information, more and more organizations begin to discover threats on the terminal by adopting a blockchain technology, for example, each terminal shares respective threat information in real time through a distributed account book to guarantee localization and rapid identification of malicious attacks and illegal behaviors, and the specific process is as follows: the terminal of the Internet of things collects local security events and completes synchronization among nodes of the whole network through a block chain technology; all the terminals of the Internet of things have full information, each terminal of the Internet of things performs overall analysis on all the information held by the terminal, and after a new threat is found, a local security strategy is updated.
However, although the existing solution uses the blockchain technology, it cannot be achieved for lightweight terminals of the internet of things, and the lightweight devices of the internet of things cannot support the storage space and computational power requirements of blockchain distributed accounts, so that threat information of the whole network cannot be stored, and frequent threat information updating and computation cannot be performed, and the blockchain technology has difficulty in landing on these terminals.
Disclosure of Invention
In order to solve the problems in the prior art, the invention provides an optimized block chain-based lightweight internet of things terminal system and a control method thereof, which ensure that the security threat of an internet of things terminal, especially a lightweight internet of things terminal, can be quickly discovered and identified by modifying a block chain technology.
The invention adopts the technical scheme that a block chain-based lightweight Internet of things terminal system comprises a plurality of block chain nodes, wherein at least 1 Internet of things terminal node is arranged on any one block chain node in a matched manner; the terminal node of the Internet of things reports a local threat event to a block chain node, and the block chain node sends a security strategy to the terminal node of the Internet of things; and pairwise information interaction between every two block chain nodes is realized, and a distributed account book is arranged between all the block chain nodes.
Preferably, any one of the internet of things terminals corresponds to a unique hardware identifier; any of the block link points includes a block link point identification.
Preferably, the terminal of the internet of things obtains a unique hash value from the hardware identifier and the starting time, and the range of the hash value is [0, N ]; the maximum value M of the block link point identification is equal to N.
Preferably, when any one of the block chain nodes is started, a broadcast request is started to all other block chain nodes, the started block chain nodes in all other block chain nodes respond to a message, and the message carries an identification value of the corresponding block chain node; and taking out the identification value of the maximum block chain node carried by all other block chain link points by the block chain node which is being started, marking as Y, and taking the value of (Y +1)% M as the identification value of the block chain node which is being started.
A control method for a block chain-based lightweight Internet of things terminal system is adopted, and the method comprises the following steps:
step 1: adding the terminal node of the Internet of things into the lightweight Internet of things terminal system;
step 2: when any terminal of the Internet of things has a security event, the corresponding terminal node of the Internet of things sends security event data to the corresponding block chain link point;
and step 3: the block chain node receives the security event data and updates the distributed account book;
and 4, step 4: and the block chain node sends a security policy to the terminal of the Internet of things.
Preferably, the step 1 comprises the steps of:
step 1.1: starting the Internet of things terminal to generate a grouping identifier;
step 1.2: the internet of things terminal node corresponding to the internet of things terminal carries a grouping identifier to send a joining request to the corresponding block chain node;
step 1.3: and the corresponding block chain link node receives the request, sends a response message, and the Internet of things terminal node processes the response message to form association and join the association in the lightweight Internet of things terminal system.
Preferably, the step 2 comprises the steps of:
step 2.1: when any terminal of the Internet of things has a security event, the terminal node of the Internet of things records the security event information and packages the security event information into a data block with a specified format;
step 2.2: the terminal node of the Internet of things sends the data block to the corresponding block link point;
step 2.3: the block link nodes record and respond to the acknowledgment messages.
Preferably, the step 3 comprises the steps of:
step 3.1: the block chain node receives and records a data block of the safety event information reported by the corresponding terminal node of the Internet of things;
step 3.2: the block chain node sends the data block of the safety event information to other block chain nodes and requests other block chain nodes to receive the data block;
step 3.3: after the confirmation, other block chain nodes receive the data block of the safety event information and count a local account book;
step 3.4: and updating the distributed ledger.
Preferably, when any one of the internet of things terminal nodes leaves the lightweight internet of things terminal system, a leaving request is actively sent to the corresponding block link node, and after the block link node receives the leaving request, the information of the internet of things terminal node is deleted and a confirmation message is responded; and the block chain node does not receive the information sent by the terminal node of the Internet of things any more.
The invention provides an optimized block chain-based lightweight Internet of things terminal system and a control method thereof. According to the invention, by combining the characteristics of small storage space, weak computing capacity and the like of the lightweight Internet of things terminal, secondary management is formed by utilizing the Internet of things terminal nodes and the block chain nodes, the Internet of things terminal nodes report local threat events and receive security strategies from the block chain nodes, and threat information is exchanged through the block chain technology while threat information of the subordinate Internet of things terminal nodes is received between the block chain nodes, so that the block chain technology is fully applied to the scene of Internet of things security, and the problems that the lightweight Internet of things equipment cannot support the storage space and the computing power demand of the block chain account book, and the block chain technology is difficult to fall on the terminals can be effectively solved.
Drawings
FIG. 1 is a topology diagram of the present invention;
FIG. 2 is a flow chart of the present invention.
Detailed Description
The present invention is described in further detail with reference to the following examples, but the scope of the present invention is not limited thereto.
The invention relates to a block chain-based lightweight Internet of things terminal system, which comprises a plurality of block chain nodes, wherein at least 1 Internet of things terminal node is arranged on any one block chain node in a matched manner; the terminal node of the Internet of things reports a local threat event to a block chain node, and the block chain node sends a security strategy to the terminal node of the Internet of things; and pairwise information interaction between every two block chain nodes is realized, and a distributed account book is arranged between all the block chain nodes.
In the invention, the light-weight Internet of things terminal refers to some Internet of things terminal equipment with small storage space and weak CPU computing capability.
In the invention, all the block chain nodes form a block chain network, a distributed account book is formed in the network, all the internet of things terminal nodes belong to a certain block chain node, and secondary management is formed by using the internet of things terminal nodes and the block chain nodes by combining the characteristics of small storage space, weak computing capacity and the like of a light-weight internet of things terminal.
According to the method, the terminal nodes of the Internet of things report local threat events and receive security strategies from the block chain nodes, threat information of the terminal nodes of the Internet of things under jurisdiction is received among the block chain nodes, and meanwhile, the threat information is exchanged through the block chain technology, so that the block chain technology is fully applied to the scene of the safety of the Internet of things, and the problems that the storage space and the calculation power demand of a block chain account book cannot be supported by light-weight Internet of things equipment and the block chain technology is difficult to fall on the terminals can be effectively solved.
Any one of the Internet of things terminals corresponds to a unique hardware identifier; any of the block link points includes a block link point identification.
The terminal of the Internet of things obtains a unique hash value by a hardware identifier and starting time, and the range of the hash value is [0, N ]; the maximum value M of the block link point identification is equal to N.
When any one block chain node is started, a broadcast request is started to all other block chain nodes, the started block chain nodes in all other block chain nodes respond to a message, and the message carries the identification values of the corresponding block chain nodes; and taking out the identification value of the maximum block chain node carried by all other block chain link points by the block chain node which is being started, marking as Y, and taking the value of (Y +1)% M as the identification value of the block chain node which is being started.
In the invention, the terminal of the Internet of things carries a unique hardware identifier when leaving a factory, and the unique hash value is obtained by utilizing the hardware identifier and the starting time.
In the invention, when each block link point is deployed before a real environment, the maximum value of the block link point identification is implanted in advance, and the value of (Y +1)% M is taken as the identification value of the starting block link node, wherein Y is the maximum identification value of the strategy of all other block link points; in fact, in general, the identification value is a serial number value, that is, a number is allocated to the current blockchain node.
A control method for the block chain-based lightweight Internet of things terminal system comprises the following steps.
Step 1: and adding the terminal node of the Internet of things into the light-weight Internet of things terminal system.
The step 1 comprises the following steps:
step 1.1: starting the Internet of things terminal to generate a grouping identifier;
step 1.2: the internet of things terminal node corresponding to the internet of things terminal carries a grouping identifier to send a joining request to the corresponding block chain node;
step 1.3: and the corresponding block chain link node receives the request, sends a response message, and the Internet of things terminal node processes the response message to form association and join the association in the lightweight Internet of things terminal system.
Step 2: and when any terminal of the Internet of things has a security event, the corresponding terminal node of the Internet of things sends security event data to the corresponding block chain link point.
The step 2 comprises the following steps:
step 2.1: when any terminal of the Internet of things has a security event, the terminal node of the Internet of things records the security event information and packages the security event information into a data block with a specified format;
step 2.2: the terminal node of the Internet of things sends the data block to the corresponding block link point;
step 2.3: the block link nodes record and respond to the acknowledgment messages.
In the invention, the format specified in step 2.1 is generally similar to the header of the message, can be flexibly adjusted, and can be set by a person skilled in the art according to actual requirements.
And step 3: and the block chain node receives the security event data and updates the distributed account book.
The step 3 comprises the following steps:
step 3.1: the block chain node receives and records a data block of the safety event information reported by the corresponding terminal node of the Internet of things;
step 3.2: the block chain node sends the data block of the safety event information to other block chain nodes and requests other block chain nodes to receive the data block;
step 3.3: after the confirmation, other block chain nodes receive the data block of the safety event information and count a local account book;
step 3.4: and updating the distributed ledger.
And 4, step 4: and the block chain node sends a security policy to the terminal of the Internet of things.
In the invention, the sending of the security policy is the issuing of configuration.
When any terminal node of the Internet of things leaves the lightweight Internet of things terminal system, actively sending a leaving request to a corresponding block link node, and after receiving the leaving request, deleting the information of the terminal node of the Internet of things and responding to a confirmation message by the block link node; and the block chain node does not receive the information sent by the terminal node of the Internet of things any more.
In the invention, the uploaded data information is not received any more, but the reconnection request can be normally received, and if the terminal node of the internet of things needs to continuously send information, the connection needs to be established again.
According to the distributed account book, a plurality of block chain nodes are arranged, at least 1 Internet of things terminal node is added into each block chain node, any Internet of things terminal generates a security event, the corresponding Internet of things terminal node sends security event data to the corresponding block chain node, the block chain node receives the security event data, the distributed account book is updated, pairwise information interaction between the block chain nodes is achieved, and a security strategy is sent to the Internet of things terminal nodes. According to the invention, by combining the characteristics of small storage space, weak computing capacity and the like of the lightweight Internet of things terminal, secondary management is formed by utilizing the Internet of things terminal nodes and the block chain nodes, the Internet of things terminal nodes report local threat events and receive security strategies from the block chain nodes, and threat information is exchanged through the block chain technology while threat information of the subordinate Internet of things terminal nodes is received between the block chain nodes, so that the block chain technology is fully applied to the scene of Internet of things security, and the problems that the lightweight Internet of things equipment cannot support the storage space and the computing power demand of the block chain account book, and the block chain technology is difficult to fall on the terminals can be effectively solved.

Claims (8)

1. The utility model provides a light weight thing networking end system based on block chain which characterized in that: the system comprises a plurality of block chain nodes, wherein at least 1 Internet of things terminal node is arranged on any one block chain node in a matched manner; the terminal node of the Internet of things reports a local threat event to a block chain node, and the block chain node sends a security strategy to the terminal node of the Internet of things; every two of the block chain nodes are subjected to information interaction, and distributed accounts are arranged among all the block chain nodes;
when any one block chain node is started, a broadcast request is started to all other block chain nodes, the started block chain nodes in all other block chain nodes respond to a message, and the message carries the identification values of the corresponding block chain nodes; taking out the identification value of the maximum block chain node carried by all other block chain link points by the block chain node which is being started, marking the identification value as Y, and taking the value of (Y +1)% M as the identification value of the block chain node which is being started, wherein M is the maximum value of the block chain link point identification;
when any terminal of the Internet of things has a security event, the terminal nodes of the Internet of things record security event information, pack the security event information into data blocks in a specified format, send the data blocks to corresponding block link points, the block link nodes receive and record the data blocks and send the data blocks to other block link points to request other block link nodes to receive the data blocks, after confirmation, the other block link points receive the data blocks of the security event information, count a local account book, and update the distributed account book; and the block chain node sends a security policy to the terminal of the Internet of things.
2. The block chain-based lightweight internet of things terminal system according to claim 1, wherein: any one of the Internet of things terminals corresponds to a unique hardware identifier; any of the block link points includes a block link point identification.
3. A block chain-based lightweight internet of things terminal system according to claim 2, wherein: the terminal of the Internet of things obtains a unique hash value by a hardware identifier and starting time, and the range of the hash value is [0, N ]; the maximum value M of the block link point identification is equal to N.
4. A control method for a block chain-based lightweight Internet of things terminal system according to any one of claims 1 to 3 is adopted, and is characterized in that: the method comprises the following steps:
step 1: adding the terminal node of the Internet of things into the lightweight Internet of things terminal system;
step 2: when any terminal of the Internet of things has a security event, the corresponding terminal node of the Internet of things sends security event data to the corresponding block chain link point;
and step 3: the block chain node receives the security event data and updates the distributed account book;
and 4, step 4: and the block chain node sends a security policy to the terminal of the Internet of things.
5. The control method of the block chain-based lightweight internet of things terminal system according to claim 4, characterized in that: the step 1 comprises the following steps:
step 1.1: starting the Internet of things terminal to generate a grouping identifier;
step 1.2: the internet of things terminal node corresponding to the internet of things terminal carries a grouping identifier to send a joining request to the corresponding block chain node;
step 1.3: and the corresponding block chain link node receives the request, sends a response message, and the Internet of things terminal node processes the response message to form association and join the association in the lightweight Internet of things terminal system.
6. The control method of the block chain-based lightweight internet of things terminal system according to claim 4, characterized in that: the step 2 comprises the following steps:
step 2.1: when any terminal of the Internet of things has a security event, the terminal node of the Internet of things records the security event information and packages the security event information into a data block with a specified format;
step 2.2: the terminal node of the Internet of things sends the data block to the corresponding block link point;
step 2.3: the block link nodes record and respond to the acknowledgment messages.
7. The control method of the block chain-based lightweight internet of things terminal system according to claim 4, characterized in that: the step 3 comprises the following steps:
step 3.1: the block chain node receives and records a data block of the safety event information reported by the corresponding terminal node of the Internet of things;
step 3.2: the block chain node sends the data block of the safety event information to other block chain nodes and requests other block chain nodes to receive the data block;
step 3.3: after the confirmation, other block chain nodes receive the data block of the safety event information and count a local account book;
step 3.4: and updating the distributed ledger.
8. The control method of the block chain-based lightweight internet of things terminal system according to claim 4, characterized in that: when any terminal node of the Internet of things leaves the lightweight Internet of things terminal system, actively sending a leaving request to a corresponding block link node, and after receiving the leaving request, deleting the information of the terminal node of the Internet of things and responding to a confirmation message by the block link node; and the block chain node does not receive the information sent by the terminal node of the Internet of things any more.
CN201811224065.9A 2018-10-19 2018-10-19 Lightweight Internet of things terminal system based on block chain and control method thereof Active CN109388968B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201811224065.9A CN109388968B (en) 2018-10-19 2018-10-19 Lightweight Internet of things terminal system based on block chain and control method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201811224065.9A CN109388968B (en) 2018-10-19 2018-10-19 Lightweight Internet of things terminal system based on block chain and control method thereof

Publications (2)

Publication Number Publication Date
CN109388968A CN109388968A (en) 2019-02-26
CN109388968B true CN109388968B (en) 2021-05-14

Family

ID=65427711

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201811224065.9A Active CN109388968B (en) 2018-10-19 2018-10-19 Lightweight Internet of things terminal system based on block chain and control method thereof

Country Status (1)

Country Link
CN (1) CN109388968B (en)

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103812819A (en) * 2012-11-05 2014-05-21 腾讯科技(深圳)有限公司 Safety scan method and device, Cloud Corner and generation method for corresponding characteristics
CN108337219A (en) * 2017-11-27 2018-07-27 中国电子科技集团公司电子科学研究院 A kind of method and storage medium of Internet of Things anti-intrusion

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107317672A (en) * 2017-05-10 2017-11-03 广东网金控股股份有限公司 A kind of light weight terminating machine block catenary system
CN107580022B (en) * 2017-08-02 2020-11-06 国家计算机网络与信息安全管理中心 Data sharing system and method
CN108270874B (en) * 2018-02-05 2021-04-23 武汉斗鱼网络科技有限公司 Application program updating method and device

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103812819A (en) * 2012-11-05 2014-05-21 腾讯科技(深圳)有限公司 Safety scan method and device, Cloud Corner and generation method for corresponding characteristics
CN108337219A (en) * 2017-11-27 2018-07-27 中国电子科技集团公司电子科学研究院 A kind of method and storage medium of Internet of Things anti-intrusion

Also Published As

Publication number Publication date
CN109388968A (en) 2019-02-26

Similar Documents

Publication Publication Date Title
CN107332876B (en) Method and device for synchronizing block chain state
CN102480727B (en) Group authentication method in machine and machine communication and system
Qu et al. Decentralized federated learning for UAV networks: Architecture, challenges, and opportunities
US20120290674A1 (en) Method and network for sharing sensor data among mobile terminals
CN101426294B (en) Wireless sensor network routing method capable of partially clustering on demand
WO2013008165A2 (en) Machine to machine (m2m) application server, xdms server, and methods for m2m applications group management
US20070266175A1 (en) Method For Distribution of Software and Configuration Data and Corresponding Data Network
CN102572015B (en) Implementation method for dynamic IPv6 address configuration of mobile ad hoc network
CN110601906A (en) Data transmission method and device based on block chain
CN102404387A (en) Method, device and equipment for information synchronization with other nodes
CN107566321B (en) File sending method, device and system
CN106487586A (en) A kind of self-organized network topology method for building up and device
Wang et al. AirBC: A lightweight reputation-based blockchain scheme for resource-constrained UANET
CN110445657B (en) Distributed networking management system based on block chain
CN103813372B (en) A kind of wireless sensor network management method based on IPv6
CN109388968B (en) Lightweight Internet of things terminal system based on block chain and control method thereof
CN112383944B (en) Unmanned aerial vehicle bee colony self-adaptive networking method with built-in block chain
CN106357723A (en) Synchronous system and method for multi-cluster information caching based on cloud host
Ilbeigi et al. Emergency management in smart cities: Infrastructure-less communication systems
CN114338702B (en) Communication data forwarding method and unmanned system cluster
CN104144403B (en) A kind of communication means and equipment, system
CN110401716A (en) Communication means and system between fringe node
CN112437059B (en) Collaborative defense strategy transceiving method for networking group intelligent system
CN112533304B (en) Ad hoc network management method, device, system, electronic equipment and storage medium
CN112039785B (en) Bidirectional feedback route discovery method and device suitable for power Internet of things environment

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant