首页> 外文会议> >Security analysis on Chinese wireless LAN standard and its solution
【24h】

Security analysis on Chinese wireless LAN standard and its solution

机译:中国无线局域网标准安全性分析及解决方案

获取原文

摘要

China has established its national standard for Wireless LAN, called GB15629.11-2003, in which, WLAN Authentication and Privacy Infrastructure (WAP1) was proposed. However, WAP1 can be proved insecure with the Canetti-Krawczyk model. Further analysis shows that in the standard there are also other vulnerabilities, such as inability to provide identity protection and resist key consistency attack, lack of private key verification and desirable security attributes like perfect forward secrecy, key control, etc. Therefore, a new protocol is proposed to fix the security problems of WAP1, especially those in the authentication and key agreement procedure. This protocol is designed and analyzed with a modular methodology and proved secure with the Canetti-Krawczyk model, thus it can guarantee the desirable security attributes. In addition, the presented protocol has a better performance than WAP1 in computational overhead and can also be applied to IEEE 802.11i as an authenticated key agreement protocol.
机译:中国已经建立了无线局域网国家标准GB15629.11-2003,其中提出了WLAN身份验证和隐私基础结构(WAP1)。但是,可以使用Canetti-Krawczyk模型证明WAP1不安全。进一步的分析表明,该标准中还存在其他漏洞,例如无法提供身份保护和抵御密钥一致性攻击,缺乏私钥验证以及理想的安全属性(如完美的前向保密性,密钥控制等)。因此,一个新协议为了解决WAP1的安全性问题,特别是在身份验证和密钥协商过程中的安全性问题,提出了解决方案。该协议使用模块化方法进行设计和分析,并通过Canetti-Krawczyk模型证明是安全的,因此可以保证所需的安全属性。另外,所提出的协议在计算开销方面具有比WAP1更好的性能,并且还可以作为经过身份验证的密钥协商协议应用于IEEE 802.11i。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号