首页> 外文期刊>Computer Communications >Defending RFID authentication protocols against DoS attacks
【24h】

Defending RFID authentication protocols against DoS attacks

机译:防御RFID身份验证协议以抵抗DoS攻击

获取原文
获取原文并翻译 | 示例
       

摘要

In this paper, we present a security weakness of a forward secure authentication protocol proposed by Tri Van Le et al. called O-FRAP which stands for Optimistic Forward secure RFID Authentication Protocol. In particular, we point out that in the O-FRAP protocol, the server can be subject to a denial-of-service attack due to a flaw in the database querying procedure. Our attack also applies to a simplified version of O-FRAP called O-RAP (Optimistic RFID Authentication Protocol) which is essentially O-FRAP but without a secret key updating procedure (and thus forward security). We then propose two improved protocols called O-FRAP~+ and O-RAP~+ which prevent the said denial-of-service attack. In addition, the O-FRAP* protocol also addresses two security weaknesses of O-FRAP pointed out earlier by Khaled and Raphael. In terms of performance, comparing to O-FRAP, O-FRAP* requires a few more computational steps but much less storage at the back-end server.
机译:在本文中,我们提出了Tri Van Le等人提出的前向安全身份验证协议的安全弱点。称为O-FRAP,代表乐观转发安全RFID身份验证协议。特别要指出的是,在O-FRAP协议中,由于数据库查询过程中的缺陷,服务器可能会遭受拒绝服务攻击。我们的攻击还适用于称为O-RAP(开放式RFID身份验证协议)的O-FRAP的简化版本,该协议本质上是O-FRAP,但没有密钥更新过程(因此也没有转发安全性)。然后,我们提出了两个改进的协议,称为O-FRAP〜+和O-RAP〜+,可以防止上述拒绝服务攻击。此外,O-FRAP *协议还解决了Khaled和Raphael先前指出的O-FRAP的两个安全漏洞。在性能方面,与O-FRAP相比,O-FRAP *需要更多的计算步骤,但在后端服务器上的存储量要少得多。

著录项

  • 来源
    《Computer Communications》 |2011年第3期|p.384-390|共7页
  • 作者

    Dang Nguyen Due; Kwangjo Kim;

  • 作者单位

    Auto-ID Lab Korea. Department of Information and Communications Engineering, KAIST, 119 Munjiro, Yuseong-gu, Daejeon 305-732. Republic of Korea;

    Auto-ID Lab Korea. Department of Information and Communications Engineering, KAIST, 119 Munjiro, Yuseong-gu, Daejeon 305-732. Republic of Korea;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    rfid security; denial-of-service attack; forward security;

    机译:RFID安全;拒绝服务攻击;转发安全;
  • 入库时间 2022-08-18 02:11:22

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号