首页> 外文会议>International Conference Workshops on Parallel Processing >Security analysis on Chinese wireless LAN standard and its solution
【24h】

Security analysis on Chinese wireless LAN standard and its solution

机译:中国无线LAN标准安全分析及其解决方案

获取原文

摘要

China has established its national standard for Wireless LAN, called GB15629.11-2003, in which, WLAN Authentication and Privacy Infrastructure (WAP1) was proposed. However, WAP1 can be proved insecure with the Canetti-Krawczyk model. Further analysis shows that in the standard there are also other vulnerabilities, such as inability to provide identity protection and resist key consistency attack, lack of private key verification and desirable security attributes like perfect forward secrecy, key control, etc. Therefore, a new protocol is proposed to fix the security problems of WAP1, especially those in the authentication and key agreement procedure. This protocol is designed and analyzed with a modular methodology and proved secure with the Canetti-Krawczyk model, thus it can guarantee the desirable security attributes. In addition, the presented protocol has a better performance than WAP1 in computational overhead and can also be applied to IEEE 802.11i as an authenticated key agreement protocol.
机译:中国已建立其用于GB15629.11-2003的无线LAN国家标准,其中,提出了WLAN认证和隐私基础设施(WAP1)。但是,WAP1可以用Canetti-Krawzyk模型证明不安全。进一步的分析表明,在标准中,还有其他漏洞,例如无法提供身份保护和抵抗关键一致性攻击,缺乏私钥验证和理想的安全属性,如完美的前向保密,关键控制等,因此新协议建议修复WAP1的安全问题,尤其是身份验证和关键协议程序的安全问题。使用模块化方法设计和分析该协议,并通过Canetti-Krawczyk模型证明了安全性,因此可以保证所需的安全属性。此外,所提出的协议在计算开销中具有比WAP1更好的性能,也可以应用于IEEE 802.11i作为经过认证的密钥协议协议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号