首页> 外文会议>International Conference on Digital Information, Networking, and Wireless Communications >A forward secure PKI-based UMTS-AKA with tunneling authentication
【24h】

A forward secure PKI-based UMTS-AKA with tunneling authentication

机译:基于安全的PKI的UMTS-AKA,具有隧道认证

获取原文

摘要

During development of the UMTS security standard, many protocols have been proposed to secure the UMTS AKA. Although these efforts have been too much until now, but new protocols are also vulnerable or are not suitable for a mobile environment, in which the computational capabilities of handsets are restricted. In this paper we propose a new protocol based on tunneling authentication. Our focus is not on the 3G network itself, but on the way of Public Key Infrastructure(PKI) deployment in cellular networks. Therefore, this scheme can be extended to other networks like 4G. We have combined the features of PKI with concept of Tunneled TLS(TTLS), where there is no need to issue a certificate for each mobile user and creating a tunnel causes a robust key agreement. In our scheme there is no need to involve mobile handset in the process of certificate path validation and we have used a new method for this purpose called efficient online-validation method. Furthermore, due to our intention for reducing changes in the 3GPP standard we still use the idea of Authentication Vector which facilitates our protocol implementation. Also user identity confidentiality is protected by using public-key encryption. Finally, the proposed protocol has the property of forward secrecy, where compromising the Master Key, does not result on insecurity of past sessions.
机译:在开发UMTS安全标准期间,已经提出了许多协议来保护UMTS AKA。虽然这些努力直到现在,但新的协议也易受攻击或不适合移动环境,其中手机的计算能力受到限制。在本文中,我们提出了一种基于隧道认证的新协议。我们的重点不是3G网络本身,而是在蜂窝网络中的公钥基础设施(PKI)部署的方式。因此,该方案可以扩展到4G等其他网络。我们已经将PKI的特征与隧道TLS(TTLS)的概念组合,在那里无需为每个移动用户发出证书并创建隧道导致强大的密钥协议。在我们的计划中,无需在证书路径验证过程中涉及移动手机,我们使用了一种新的方法,以此目的被称为有效的在线验证方法。此外,由于我们旨在减少3GPP标准的变化,我们仍然使用认证向量的想法,这促进了我们的协议实施。此外,通过使用公钥加密保护用户身份机密性。最后,拟议的议定书具有前进保密的属性,损害了主密钥,不会导致过去会议的不安全。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号