欢迎访问中国科学院大学学报,今天是
论文

关于BAN逻辑分析的改进

  • 冯彬
展开
  • 昆明理工大学理学院数学系, 昆明 650093
冯彬,女.1958年11月生,副教授

收稿日期: 2002-06-20

  修回日期: 2002-07-26

  网络出版日期: 2002-05-18

Formal Model and Security Analysis for Cryptographic Protocols in the Distributed Network Environment

  • FENG Bin
Expand
  • Department of Mathematics, Science Institute, Kunming University of Science and Technology, Kunming 650093

Received date: 2002-06-20

  Revised date: 2002-07-26

  Online published: 2002-05-18

摘要

基于BAN逻辑的协议分析往往容易忽略密码协议潜在的“重放攻击”漏洞,为解决这一问题,对BAN逻辑分析的新消息判断法则逻辑公设作了一点改进.从而降低了BAN逻辑分析的误导性.

本文引用格式

冯彬 . 关于BAN逻辑分析的改进[J]. 中国科学院大学学报, 2002 , 19(3) : 306 -310 . DOI: 10.7523/j.issn.2095-6134.2002.3.013

Abstract

Due to the rapid growth of the Internet applications, varied cryptographic protocols, including thses complex protocols with many roles and many cryptographic primitives, have been widely used to achieved various secure requirements in the distributed system. In the large distributed network environment, due to the maximum number of participants involved and the complexcity of run conditions of the protocol, the security characterzation and analysis for protocols is very difficult and complicated. In this paper, we introduce a new algebra system called Cryptographic Protocol Algebra(CPA) that characterizes the algebraic properties of messages involved in the protocol with multiple cryptographic operations. Based on CPA, we propose a new formal model for general cryptographic protocols. And we specify run conditions and security properties of cryptographic protocols in the unbounded network environment by building a formal language. Based on our model, we characterize a coordinated attack mode to protocols, and discuss reduction techniques for the protocol security analysis. Finally we briefly describe a new automatic analysis process for cryptographic protocols.

参考文献

1. Burrows M AbadiM, Needham R. A Logic of Authentication, ACM Trans on Computer Systenms 1990, 8(1):18-V36

2. 卿斯汉.密码学与计算机网络安全.中国计算机学会学术著作丛书.北京:清华大学出版社,2001.128^-147

3. Gong 1,Needham R, Yahalom R. Reasoning About Belief in Crytographic Protocols.In:Proc 1990 IEEE Symp Security and Privacy:1990.234-V248

4. Syverson P, Oorshot P.On Unifying Some Crytographic Protocol Logic. In: Proc IEEE Symp Security and Privacy.1994

5. 刘木兰,龚奇敏.密码学进展—CHINACRYPT' 98.见:第五界中国密码学学术会议论文集.1988.123125

6. 冯登国.密码分析.中国计算机学会学术丛书.北京:清华大学出版社,2000.115-117

文章导航

/