摘要
为了设计出具有高安全性的安全协议,提出了一种面向主体的逻辑,可以形式化和系统地设计共享密钥安全协议;根据可以提供的不同安全服务,将密码机制抽象为不同信道,这样在设计安全协议时不必考虑密码机制的实现细节;提出安全协议的转发设计规则,将设计规则作为预防攻击的有效措施;运用该逻辑和设计规则设计了一种新的共享密钥安全协议,该协议能达到相互身份认证和密钥分发目的,并能预防与设计规则相对应的攻击。
In order to design highly secure security protocols, an agent-oriented logic is provided, which can be utilized to formally and systematically design shared key security protocols. Cryptographic mechanisms are abstracted to different channels, so that their implementation details need not be considered while security protocols are designed. Design principles of transfer are provided, which are regarded as available measures to prevent attacks. A new shared-key security protocol using the logic and design principles is designed, so as to attain mutual authentication and key distribution together with to prevent attacks that are opposite to design principles.
出处
《计算机工程》
CAS
CSCD
北大核心
2006年第11期40-41,91,共3页
Computer Engineering
基金
国家"863"计划基金资助项目(2004AA1Z1090)
关键词
安全协议
主体
逻辑
信道
Security protocols
Agent
Logic
Channel