首页> 外文期刊>Fokus Report >Secure Physical Access withNFC-enabled Smartphones
【24h】

Secure Physical Access withNFC-enabled Smartphones

机译:使用支持NFC的智能手机进行安全的物理访问

获取原文
       

摘要

This paper presents a smartphone-based physical access control system in which the access points are not directly connected to a central authorization server. The access points ask the mobile phone whether a particular user has access or not. The mobile phone then relays such a request to the access server. The authentication of the smartphone is based on public-key cryptography. This requires that the private key is stored in a secure element or in a trusted execution environment to prevent identity theft. In our solu- tion we use the following secure element archiectures: Host Card Emulation (HCE) and a microSD-based secure element. We show that the HCE approach cannot solve the relay attack under conservative security assumptions and we present and discuss an implementation based on a microSD secure element that still allows the access points to connect to the authorization server upon every access albeit the access points are not connected with it.
机译:本文提出了一种基于智能手机的物理访问控制系统,其中访问点未直接连接到中央授权服务器。接入点询问手机是否有特定用户可以访问。然后,移动电话将此类请求中继到访问服务器。智能手机的身份验证基于公钥密码术。这要求将私钥存储在安全元素或受信任的执行环境中,以防止身份盗用。在我们的解决方案中,我们使用以下安全元素架构:主机卡仿真(HCE)和基于microSD的安全元素。我们展示了HCE方法在保守的安全性假设下无法解决中继攻击,并且我们提出并讨论了基于microSD安全元素的实现,该实现仍允许访问点在每次访问时都连接到授权服务器,尽管访问点未连接用它。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号