欢迎访问中国科学院大学学报,今天是
论文

基于挑战-响应的认证协议安全的必要条件(英文)

  • 来学嘉
展开
  • 苏黎世, 瑞士 CH-8001

收稿日期: 2002-07-26

  网络出版日期: 2002-05-18

Security Requirements on Authentication Protocols Using Challenge-Response

  • LAI Xue-Jia
Expand
  • S. W. I. S. GROUP CH-8001 Zurich, Switzerland

Received date: 2002-07-26

  Online published: 2002-05-18

摘要

基于挑战-响应方式的相互认证协议的安全需求被明确表示为7个简单的必要条件.每一个条件和一种攻击相关联,所以不实现所有这些条件的协议将会遭到某种攻击.给出了两个协议,使得它们包含所需最少的安全参数.

本文引用格式

来学嘉 . 基于挑战-响应的认证协议安全的必要条件(英文)[J]. 中国科学院大学学报, 2002 , 19(3) : 246 -253 . DOI: 10.7523/j.issn.2095-6134.2002.3.005

Abstract

Security requirements for a challenge-response mutual authentication protocol are formulted as seven simple necessary conditions. Each of these conditions is related to an attack so that a protocol not fulfilling all the conditions will be vulnerable to one of the attacks. Two protocols are idetified such that they contain minimal number of necessary security parmeters.

参考文献

1. R Bird, I Gopal, A Herzberg, P Janson, S Kutten, R Molva, M Yung. Systematic design of a family of attack-resistant authenticationprotocols. IEEE J Selected Areas in Communications, 1993, 11 (5) :679一693

2. D Denning, G Sacco. Timestamps in key distribution protocols. Commun ACM, 1981,24(8) :533^536

3. W Diffie, P porschot, M Wiener. Authentication and authehticated key exchanges. Design, Codes and Cryptography. Kluwer Academic Publishers:1992.2,107一125

4. ISO CD 9798-2, Information Technology-Security techniques-Entity authentication mechahisms, Part 2:Entity authentication using symmetric techniques,June 1990

5. R M Needham, M D Schroeder. Using encryption for authentication in large networks of computers. Commun ACM, 1978, 21(12) :993^999

6. ISO 9798-2(2nd edition),Information Technology-Security technigues-Entity authentication mechanisms, Part 2:Entity authentication using symmetric techniques, 1999

7. R Molva, G Tsudik, E V Herreweghen, S Zatti. KryptoKnight authentication and key distribution system. In: Proceedings of ESO-RICS'92,1992,155一174

8. M Bellare, P Rogaway. Entity authentication and key distribution. In: Advances in Cryptology-CRYPTO'93 Proceedings, Springer-Verlag.

9. ISO CD 10202-5,Financial Transaction Cards-Security architecture of financial systems using integrated circuit cards:Part 5:Use of Algorithms, June 1993

Options
文章导航

/