首页> 外文期刊>Journal of Cryptology >The TLS Handshake Protocol: A Modular Analysis
【24h】

The TLS Handshake Protocol: A Modular Analysis

机译:TLS握手协议:模块化分析

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

We study the security of the widely deployed Secure Session Layer/ Transport Layer Security (TLS) key agreement protocol. Our analysis identifies, justifies, and exploits the modularity present in the design of the protocol: the application keys offered to higher-level applications are obtained from a master key, which in turn is derived through interaction from a pre-master key.rnWe define models (following well-established paradigms) that clarify the security level enjoyed by each of these types of keys. We capture the realistic setting where only one of the two parties involved in the execution of the protocol (namely the server) has a certified public key, and where the same master key is used to generate multiple application keys.rnThe main contribution of the paper is a modular and generic proof of security for a slightly modified version of TLS. Our proofs shows that the protocol is secure even if the pre-master and the master keys only satisfy only weak security requirements. Our proofs make crucial use of modelling the key derivation function of TLS as a random oracle.
机译:我们研究了广泛部署的安全会话层/传输层安全性(TLS)密钥协议的安全性。我们的分析确定,证明和利用了协议设计中存在的模块性:提供给更高级别应用程序的应用程序密钥是从主密钥获得的,而主密钥又是通过预主密钥的交互而得出的。模型(遵循公认的范例),以阐明每种类型的密钥所享有的安全级别。我们捕获了一个现实的设置,其中参与协议执行的两方中只有一个(即服务器)具有经过认证的公钥,并且使用同一主密钥生成多个应用程序密钥。rn本文的主要贡献是TLS的稍微修改版本的模块化和通用安全性证明。我们的证据表明,即使预主密钥和主密钥仅满足较弱的安全性要求,该协议也是安全的。我们的证明至关重要地使用了将TLS的密钥派生函数建模为随机预言机的关键。

著录项

  • 来源
    《Journal of Cryptology》 |2010年第2期|187-223|共37页
  • 作者单位

    Department Computer Science, University of Bristol, Merchant Venturers Building, Woodland Road, Bristol BS8 1UB, UK;

    Department Computer Science, University of Bristol, Merchant Venturers Building, Woodland Road, Bristol BS8 1UB, UK;

    Department Computer Science, University of Bristol, Merchant Venturers Building, Woodland Road, Bristol BS8 1UB, UK;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    provable security; TLS; SSL;

    机译:可证明的安全性;TLS;SSL协议;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号