首页 | 本学科首页   官方微博 | 高级检索  
     检索      

可信网络连接双向认证协议的设计与分析
引用本文:徐明飞,吴礼发,洪 征,曾晓光,周振吉.可信网络连接双向认证协议的设计与分析[J].解放军理工大学学报,2014,0(4):307-315.
作者姓名:徐明飞  吴礼发  洪 征  曾晓光  周振吉
作者单位:解放军理工大学 指挥信息系统学院,江苏 南京 210007
基金项目:江苏省自然科学基金资助项目(BK20131069,BK2011115)
摘    要:针对可信网络连接认证协议的现有方案存在单向认证、平台身份和配置信息泄露、无法抵御伪装及重放攻击等安全问题,提出了一种新的认证协议。该协议通过引入可信第三方实现了双向用户身份和平台身份的认证,防止了伪装攻击。直接匿名证明方法和时间戳的应用,保护了平台身份和配置信息的安全,防止了重放攻击。采用BAN逻辑对协议进行形式化描述及分析,验证了本协议可以提高认证的安全性,具有较高的应用价值。

关 键 词:可信网络连接  双向认证协议  BAN逻辑  安全性分析
收稿时间:2014/1/21 0:00:00

Design and analysis of mutual authentication protocol for trusted network connect
XU Mingfei,WU Lif,HONG Zheng,ZENG Xiaoguang and ZHOU Zhenji.Design and analysis of mutual authentication protocol for trusted network connect[J].Journal of PLA University of Science and Technology(Natural Science Edition),2014,0(4):307-315.
Authors:XU Mingfei  WU Lif  HONG Zheng  ZENG Xiaoguang and ZHOU Zhenji
Institution:College of Command Information System, PLA Univ. of Sci. &; Tech., Nanjing 210007, China
Abstract:There are some security problems in the existing trusted network connect authentication protocols, such as one-way authentication, platform identity and configuration information leakage, inability to resist the masquerade and replay attacks. In order to solve the problems, a new authentication protocol was proposed. The trusted third party was introduced into the protocol, so that both the user and the platform's bidirectional identity security authentication could be achieved, and masquerade attacks prevented. The protocol uses the Direct Anonymous Attestation method to guarantee the safety of the platform identity and configuration information, and uses timestamp to prevent replay attacks. BAN logic was applied to describing and analyzing the protocol formally. Validation results show that the protocol is practicable and can improve the security of the authentication effectively.
Keywords:trusted network connect  mutual authentication protocol  BAN logic analysis  security analysis
本文献已被 CNKI 等数据库收录!
点击此处可从《解放军理工大学学报》浏览原始摘要信息
点击此处可从《解放军理工大学学报》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号