首页> 外文会议>International Schools on Foundations of Security Analysis and Design >The Open-Source Fixed-Point Model Checker for Symbolic Analysis of Security Protocols
【24h】

The Open-Source Fixed-Point Model Checker for Symbolic Analysis of Security Protocols

机译:用于安全协议符号分析的开源定点模型检查器

获取原文

摘要

We introduce the Open-source Fixed-point Model Checker OFMC for symbolic security protocol analysis, which extends the On-the-fly Model Checker (the previous OFMC). The native input language of OFMC is the AVISPA Intermediate Format IF. OFMC also supports AnB, a new Alice-and-Bob-style language that extends previous similar languages with support for algebraic properties of cryptographic operators and with a simple notation for different kinds of channels that can be used both as assumptions and as protocol goals. AnB specifications are automatically translated to IF. OFMC performs both protocol falsification and bounded session verification by exploring, in a demand-driven way, the transition system resulting from an IF specification. OFMC's effectiveness is due to the integration of a number of symbolic, constraint-based techniques, which are correct and terminating. The two major techniques are the lazy intruder, which is a symbolic representation of the intruder, and constraint differentiation, which is a general search-reduction technique that integrates the lazy intruder with ideas from partial-order reduction. Moreover, OFMC allows one to analyze security protocols with respect to an algebraic theory of the employed cryptographic operators, which can be specified as part of the input. We also sketch the ongoing integration of fixed-point-based techniques for protocol verification for an unbounded number of sessions.
机译:我们介绍了用于符号安全协议分析的MCC的开源定点模型检查器,它扩展了在飞行模式检查器(上一个MC)。 iFC的本机输入语言是Avispa中间格式IF。 OFMC还支持ANB,一个新的Alice-and-Bob-style语言,它扩展了以前类似的语言,支持加密运算符的代数属性,以及用于不同类型的通道的简单符号,可以作为假设和协议目标使用。 ANB规范自动翻译为IF。 OFMC以需求驱动的方式探索来自IF规范的转换系统来执行两个协议伪造和有界会话验证。 OFMC的有效性是由于整合了许多基于约束的技术,这是正确和终止的。这两种主要技术是惰性入侵者,它是入侵者的象征性,和约束分化,这是一般的搜索减少技术,它与偏级减少的思想集成了懒惰的入侵者。此外,OFC允许人们对所采用的加密运算符的代数理论进行分析安全协议,其可以被指定为输入的一部分。我们还绘制了用于无限数量的会话的协议验证的持续集成。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号