首页> 外文OA文献 >Analysis of Object-Specific Authorization Protocol (OSAP)udusing coloured Petri nets
【2h】

Analysis of Object-Specific Authorization Protocol (OSAP)udusing coloured Petri nets

机译:特定对象授权协议(OSAP) ud的分析使用彩色陪替氏网

摘要

The use of Trusted Platform Module (TPM) is be-udcoming increasingly popular in many security sys-udtems. To access objects protected by TPM (suchudas cryptographic keys), several cryptographic proto-udcols, such as the Object Specific Authorization Pro-udtocol (OSAP), can be used. Given the sensitivity andudthe importance of those objects protected by TPM,udthe security of this protocol is vital. Formal meth-udods allow a precise and complete analysis of crypto-udgraphic protocols such that their security propertiesudcan be asserted with high assurance. Unfortunately,udformal verification of these protocols are limited, de-udspite the abundance of formal tools that one can use.udIn this paper, we demonstrate the use of ColouredudPetri Nets (CPN) - a type of formal technique, toudformally model the OSAP. Using this model, we thenudverify the authentication property of this protocol us-uding the state space analysis technique. The results ofudanalysis demonstrates that as reported by Chen andudRyan the authentication property of OSAP can beudviolated.
机译:信任平台模块(TPM)的使用在许多安全系统中正变得越来越流行。要访问受TPM保护的对象(例如 udas加密密钥),可以使用几种加密协议 udcol,例如“对象特定授权协议” udtocol(OSAP)。鉴于受TPM保护的那些对象的敏感性和重要性,该协议的安全性至关重要。形式化方法可以对加密 udgraphic协议进行精确而完整的分析,从而可以高度肯定地声明其安全属性。不幸的是,尽管人们可以使用大量的形式化工具,但是对这些协议的形式化验证仍然是有限的。正式建模OSAP。使用这个模型,我们然后使用状态空间分析技术来对该协议的身份验证属性进行验证。 udanalysis的结果表明,正如Chen和 udRyan所报告的那样,OSAP的身份验证属性可以被 udviod。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号