首页 | 本学科首页   官方微博 | 高级检索  
     

Otway-Rees协议改进及形式化证明
引用本文:鲁来凤,段新东,马建峰.Otway-Rees协议改进及形式化证明[J].通信学报,2012,33(Z1):250-254.
作者姓名:鲁来凤  段新东  马建峰
基金项目:The National Natural Science Foundation of China;The Natural Science Foundation of Shaanxi Province;The Natural Science Foundation of Shaanxi Province;The Fundamental Research Funds for the Central Universities;The Fundamental Research Funds for the Central Universities;The Fundamental Research Funds for the Central Universities
摘    要:选取认证密钥分配协议Otway-Rees协议作为研究对象,利用协议组合逻辑(PCL)作为协议证明工具,对安全协议形式化分析及证明进行了研究。首先给出了Otway-Rees协议常见的攻击形式,分析了存在的缺陷,提出了改进方案(AOR协议);然后,为了更好地形式化描述AOR协议,对传统的PCL进行一定的扩展;紧接着,用扩展后的PCL对改进的协议中各个实体的行为和协议的安全属性进行形式化描述,将改进后的协议进行模块化划分,并利用PCL进行组合证明;最后,得出改进后的AOR协议具有密钥保密属性。


Improvement and formal proof on protocol Otway-Rees
Lai-feng LU,Xin-dong DUAN,Jian-feng MA.Improvement and formal proof on protocol Otway-Rees[J].Journal on Communications,2012,33(Z1):250-254.
Authors:Lai-feng LU  Xin-dong DUAN  Jian-feng MA
Affiliation:1. College of Mathematics and Information Science,Shaanxi Normal University,Xi’an 710062,China;2. School of Software Nan Yang Institute of Technology,Nanyang 430074,China;3. Ministry of Education Key Laboratory of Computer Networks and Information Security,Xidian University,Xi’an 710071,China
Abstract:Choosing the authentication key distribution protocol Otway-Rees as the research object,using protocol composition logic (PCL) as proof tool,the security protocol analysis and formal proof was studied.Firstly,this paper gave the forms of security attack,analyzed the Otway-Rees defects and put forward the amended protocol (named as AOR protocol).Then,PCL was extended.And then PCL was used to describe and prove the behavior of each entity and the safety of the protocol attribute formally.Finally,the conclusion was given that the amended AOR protocol has the security attribute of key confidentiality.
Keywords:security protocol  formal methods  protocol composition logic  protocol Otway-Rees  
点击此处可从《通信学报》浏览原始摘要信息
点击此处可从《通信学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号