欢迎访问中国科学院大学学报,今天是

中国科学院大学学报 ›› 2008, Vol. 25 ›› Issue (5): 611-614.DOI: 10.7523/j.issn.2095-6134.2008.5.006

• 论文 • 上一篇    下一篇

一个移动Ad Hoc网密钥协商协议的安全分析

徐静   

  1. 中国科学院研究生院信息安全国家重点实验室,北京100049
  • 收稿日期:1900-01-01 修回日期:1900-01-01 发布日期:2008-09-15

Security analysis of a key agreement protocol for mobile Ad Hoc network

Xu Jing   

  1. State Key Laboratory of Information Security, Graduate University of the Chinese Academy of Sciences, Beijing 100049, China
  • Received:1900-01-01 Revised:1900-01-01 Published:2008-09-15

摘要: Ad Hoc网是一种不依赖于任何固定基础设施、没有中心控制节点、计算资源受限的新型无线移动网络。最近王晓峰等学者提出了一个新的适用于Ad Hoc网的具有口令认证和共享口令进化的多方密钥协商协议,并认为他们的协议是安全而高效的。然而我们发现这一协议存在严重的安全缺陷:不能抵抗离线口令猜测攻击和伪造攻击;不能提供前向安全性和后向安全性;不能动态更新群组成员的密钥。

关键词: Ad Hoc网, 密钥协商, 安全分析

Abstract:

As a new type of wireless mobile networks, Ad Hoc networks do not depend on any fixed infrastructure, and have no centralized control unit and so its computation capabilities are limited by mobile nodes. Recently, Wang, et al. proposed a novel multi-party key agreement protocol with password authentication and sharing password evolvement for Ad Hoc networds and claimed their protocol secure and efficient. However, the research shows the protocol is insecure against off-line password guessing attack and forgery attack. We also point out that the protocol does not meet forward security, backward security and dynamic key evolvement.

Key words: Ad hoc network, key agreement, security analysis