摘要
对认证协议进行了研究,指出采用保密服务是设计认证协议是一种安全服务的误用,存在两种潜在的安全隐患。针对带密钥的单向函数提出了一种扩展的BAN逻辑。利用该逻辑对两种改进的公钥认证协议进行形式化分析,说明带密钥的单向函数所提供的两种安全服务能够保证公钥认证协议的安全。
Based on the research of public-key authentication protocols, its error to design the kind of protocols using confidential serivce was pointed out. An extended BAN logic was proposed. Two improved public-key authentication protocols were analysed by the extended logic. It shows that one-way function offers the necessary secure services for public-key authentication protocols.
出处
《计算机应用》
CSCD
北大核心
2005年第11期2509-2511,共3页
journal of Computer Applications
基金
国家973规划项目(G1999035802)
关键词
BAN逻辑
单向函数
公钥认证协议
BAN logic
one-way function
public-key authentication protocols