首页 | 本学科首页   官方微博 | 高级检索  
     


PUF-enhanced offline RFID security and privacy
Affiliation:1. TÜB?TAK B?LGEM UEKAE, Kocaeli, Turkey;2. Sabanc? University, Faculty of Engineering and Natural Sciences, ?stanbul, Turkey;1. Department of Mechanical Engineering, Northwestern University, Evanston, IL, USA;2. Department of Mechanical and Automation Engineering, The Chinese University of Hong Kong, Hong Kong;1. New Media College, Zhejiang University of Media and Communications, Zhejiang 310018, China;2. College of Mathematics, Physics, and Information Engineering, Zhejiang Normal University, Zhejiang 321004, China;1. Key Laboratory of Luminescence and Optical Information, Ministry of Education, Beijing Jiaotong University, Beijing 100044, People?s Republic of China;2. State Key Laboratory of Catalysis, Dalian Institute of Chemical Physics, Chinese Academy of Sciences, Dalian National Laboratory for Clean Energy, 457 Zhongshan Road, Dalian 116023, People?s Republic of China;3. Key Laboratory of Soft Chemistry and Functional Materials, Ministry of Education, Nanjing University of Science and Technology, Nanjing 210094, People?s Republic of China
Abstract:RFID (Radio Frequency IDentification) based communication solutions have been widely used nowadays for mobile environments such as access control for secure system, ticketing systems for transportation, and sport events. These systems usually depend on readers that are not continuously connected to a secure backend system. Thus, the readers should be able to perform their duties even in offline mode, which generally requires the management by the readers of the susceptible data. The use of RFID may cause several security and privacy issues such as traceability of tag owner, malicious eavesdropping and cloning of tags. Besides, when a reader is compromised by an adversary, the solution to resolve these issues getting worse. In order to handle these issues, several RFID authentication protocols have been recently proposed; but almost none of them provide strong privacy for the tag owner. On the other hand, several frameworks have been proposed to analyze the security and privacy but none of them consider offline RFID system.Motivated by this need, in this paper, we first revisit Vaudenay's model, extend it by considering offline RFID system and introduce the notion of compromise reader attacks. Then, we propose an efficient RFID mutual authentication protocol. Our protocol is based on the use of physically unclonable functions (PUFs) which provide cost-efficient means to the fingerprint chips based on their physical properties. We prove that our protocol provides destructive privacy for tag owner even against reader attacks.
Keywords:
本文献已被 ScienceDirect 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号