首页> 外文学位 >Issues and approaches to generalizing two-party authentication protocols for multi-party authentication.
【24h】

Issues and approaches to generalizing two-party authentication protocols for multi-party authentication.

机译:为多方身份验证而泛化两方身份验证协议的问题和方法。

获取原文
获取原文并翻译 | 示例

摘要

The design of cryptographic protocols with well understood properties is a difficult problem. Many simple cryptographic protocols that have been designed over the years by experienced designers have been found to have subtle flaws that have lead to attacks against them. As a result, designers will often attempt to modify protocols that have well understood properties to address new requirements. Such an approach can introduce flaws into the new protocol that are not present in the original protocol as assumptions under which the original protocol was designed are changed. In this paper, we will look at the issues associated with modifying two party authentication protocols to address group authentication by looking at efforts to modify the Needham-Schroeder-Lowe (NSL) protocol for use in group authentication. We will carefully review the assumptions under which the NSL protocol was proven to provide authentication and the changing assumptions when moving from a two party setting to a group setting. Several approaches to modifying the NSL protocol will be analyzed and flaws that result in the new protocols will be exposed, as well as approaches that maintain the properties of the protocol. Finally, we develop the requirements that any group authentication protocol would need to meet the same authentication goals as the NSL protocol against the same Dolev-Yao intruder.
机译:具有众所周知的特性的密码协议的设计是一个难题。多年来,由经验丰富的设计师设计的许多简单密码协议都被发现具有细微的缺陷,这些缺陷导致了对其的攻击。结果,设计人员将经常尝试修改具有众所周知的属性的协议来满足新的要求。这样的方法可能会在新协议中引入在原始协议中不存在的缺陷,因为在设计原始协议时要根据这些缺陷进行更改。在本文中,我们将通过研究修改用于组认证的Needham-Schroeder-Lowe(NSL)协议的努力,来研究与修改两方认证协议以解决组认证有关的问题。当从两方设置转换为组设置时,我们将仔细回顾NSL协议被证明可提供身份验证的假设以及不断变化的假设。将分析几种修改NSL协议的方法,并揭示导致新协议的缺陷以及维护协议属性的方法。最后,我们提出了要求:对于相同的Dolev-Yao入侵者,任何组身份验证协议都需要满足与NSL协议相同的身份验证目标。

著录项

  • 作者单位

    University of Maryland, Baltimore County.;

  • 授予单位 University of Maryland, Baltimore County.;
  • 学科 Computer Science.
  • 学位 Ph.D.
  • 年度 2010
  • 页码 73 p.
  • 总页数 73
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2022-08-17 11:45:39

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号