【24h】

MULTI-CHANNEL SECURITY THROUGH DATA FRAGMENTATION

机译:通过数据碎片进行多通道安全性

获取原文

摘要

This chapter presents a novel security framework developed for a multichannel communications architecture that achieves security by distributing messages and their authentication codes across multiple channels at the bit level. This method of transmission provides protection from confidentiality and integrity attacks without relying on encryption. The two communicating parties utilize existing key exchange mechanisms to pass initialization information. The framework operates by assigning to each message bit a fragment identifier using a hardware-based stream cipher as a pseudorandom number generator, and transmitting specific message fragments across each channel. This prevents the entirety of a message from being transmitted over a single channel and spreads the authentication across the available channels, enabling the sender and receiver to identify a compromised channel even in the presence of a sophisticated man-in-the-middle attack where the adversary forces message acceptance at the destination, perhaps by altering the message error detecting code. Under some conditions, the receiver can recover the original message without retransmission. The holistic framework is attractive for critical infrastructure communications because it provides availability while defending against confidentiality and integrity attacks.
机译:本章提出了一种为多通道通信架构开发的新型安全框架,该架构通过在位电平的多个通道上分配消息和其认证代码来实现安全性。这种传输方法提供了保密性和完整性攻击的保护,而无需依赖加密。两个通信缔约方利用现有的密钥交换机制来传递初始化信息。该框架通过使用基于硬件的流密码作为伪Andom数生成器分配到每个消息比特A片段标识符,并在每个信道上发送特定的消息片段。这防止了通过单个信道传输的整个消息,并在可用信道上传播认证,使得发送者和接收器即使在存在复杂的中间攻击时,也可以识别受损信道对手迫使目的地的消息接受,或许通过改变消息错误检测代码。在某些条件下,接收器可以在没有重传的情况下恢复原始信息。整体框架对于关键基础设施通信具有吸引力,因为它提供了可用性,同时防止保密性和完整性攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号