首页 | 官方网站   微博 | 高级检索  
     

安全协议验证中DY模型的构建框架
引用本文:唐郑熠,杨芳,薛醒思.安全协议验证中DY模型的构建框架[J].福建工程学院学报,2015,0(3):239-243.
作者姓名:唐郑熠  杨芳  薛醒思
作者单位:福建工程学院信息科学与工程学院
摘    要:攻击者建模是安全协议验证工作的一个重要部分,直接影响到验证的效率与质量,但目前却还没有一个可遵循的形式化框架,影响了建模工作的准确性与客观性。针对这一问题,通过对在安全协议验证中具有广泛影响的DY模型进行形式化,建立了一个DY模型的构建框架,刻画了攻击者的构成要素、行为规则以及行为模式,从而保证了攻击者具有合理的行为与能力,并能在攻击过程中获取新的知识,不断增强攻击能力。最后,将该工作运用到Otway Rees协议的验证中,找出了该协议中所存在的漏洞,从而证明了该构建框架的有效性。

关 键 词:安全协议  形式化  DY模型  攻击者  Otway  Rees协议

A framework for constructing DY model in security protocol verification
Tang Zhengyi,Yang Fang,Xue Xingsi.A framework for constructing DY model in security protocol verification[J].Journal of Fujian University of Technology,2015,0(3):239-243.
Authors:Tang Zhengyi  Yang Fang  Xue Xingsi
Affiliation:College of Information Science and Engineering, Fujian University of Technology
Abstract:The modelling of intruders is an important part of security protocol verification, which directly affects the efficiency and correctness of verification. There is no available formal framework of introders modelling, which is a disadvantage for modelling work. A framework for formalizing/constructing DY model that has extensive influence on security protocol verification was proposed. The framework can depict the components, behaviours and behaviour model of the intruders, which ensures that the intruder has reasonable behaviours and ability and can acquire new knowledges in the attacking process to enhance contantly the attacking ability. The effectiveness of the framework was confirmed in the verification of Otway Rees protocol in which a fault in the protocol was found.
Keywords:security protocol  formalization  Dolev and Yao (DY) model  intruder  Otway Rees protocol
本文献已被 万方数据 等数据库收录!
点击此处可从《福建工程学院学报》浏览原始摘要信息
点击此处可从《福建工程学院学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号