首页> 外文期刊>Recent advances in electrical & electronic engineering >Formal Analysis of the Real-time Multimedia Network Protocol ZRTP
【24h】

Formal Analysis of the Real-time Multimedia Network Protocol ZRTP

机译:实时多媒体网络协议ZRTP的正式分析

获取原文
获取原文并翻译 | 示例
           

摘要

As the multimedia social network develops rapidly, protocols protecting the security of realtime multimedia are becoming very significant. The ZRTP protocol, one of Real-time Transport Protocols (RTPs) for real-time multimedia applications, has many advantages compared with others. Though the calculation cost is relatively high, the ZRTP protocol provides perfect forward secrecy and authentication against man-in-the-middle attack. As so many formal verification tools were proposed recently, formal method has become one of the main methods of security protocol analysis. However, the formal verification tools are rarely used for the Real-time Transport Protocols. In this paper, we innovatively utilize the formal verification tool Scyther- Compromise and Tamarin to analyse the ZRTP protocol. According to the results, we find that the ZRTP protocol is insecure under the eCK model though it provides the perfect forward secrecy property. The adversary can impersonate the endpoint when the shared secrets are revealed. Besides, the experiments of this paper show that the formal method can perform perfectly and play an important role in protocol analysis.
机译:随着多媒体社交网络迅速发展,保护实时多媒体安全性的协议变得非常显着。 ZRTP协议是实时多媒体应用的实时传输协议(RTPS)之一,与他人相比具有许多优点。虽然计算成本相对较高,但ZRTP协议提供了完美的前锋保密性和认证,对中间人攻击。由于最近提出了许多正式验证工具,正式的方法已成为安全协议分析的主要方法之一。但是,正式验证工具很少用于实时传输协议。在本文中,我们创新地利用了正式的验证工具Sytherther-Interromise和Tamarin来分析ZRTP协议。根据结果​​,我们发现ZRTP协议在ECK模型下不安全,尽管它提供了完美的前向保密性。当揭示共享秘密时,对手可以冒充终点。此外,本文的实验表明,正式方法可以在协议分析中完美地进行并发挥重要作用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号