欢迎访问中国科学院大学学报,今天是

中国科学院大学学报 ›› 2002, Vol. 19 ›› Issue (3): 306-310.DOI: 10.7523/j.issn.2095-6134.2002.3.013

• 论文 • 上一篇    下一篇

关于BAN逻辑分析的改进

冯彬   

  1. 昆明理工大学理学院数学系, 昆明 650093
  • 收稿日期:2002-06-20 修回日期:2002-07-26 发布日期:2002-05-18
  • 作者简介:冯彬,女.1958年11月生,副教授

Formal Model and Security Analysis for Cryptographic Protocols in the Distributed Network Environment

FENG Bin   

  1. Department of Mathematics, Science Institute, Kunming University of Science and Technology, Kunming 650093
  • Received:2002-06-20 Revised:2002-07-26 Published:2002-05-18

摘要:

基于BAN逻辑的协议分析往往容易忽略密码协议潜在的“重放攻击”漏洞,为解决这一问题,对BAN逻辑分析的新消息判断法则逻辑公设作了一点改进.从而降低了BAN逻辑分析的误导性.

关键词: 密码协议, 逻辑分析, 重放攻击

Abstract:

Due to the rapid growth of the Internet applications, varied cryptographic protocols, including thses complex protocols with many roles and many cryptographic primitives, have been widely used to achieved various secure requirements in the distributed system. In the large distributed network environment, due to the maximum number of participants involved and the complexcity of run conditions of the protocol, the security characterzation and analysis for protocols is very difficult and complicated. In this paper, we introduce a new algebra system called Cryptographic Protocol Algebra(CPA) that characterizes the algebraic properties of messages involved in the protocol with multiple cryptographic operations. Based on CPA, we propose a new formal model for general cryptographic protocols. And we specify run conditions and security properties of cryptographic protocols in the unbounded network environment by building a formal language. Based on our model, we characterize a coordinated attack mode to protocols, and discuss reduction techniques for the protocol security analysis. Finally we briefly describe a new automatic analysis process for cryptographic protocols.

Key words: cryptographic protocol, formal method, information security, algebra system

中图分类号: