作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (06): 126-128. doi: 10.3969/j.issn.1000-3428.2007.06.044

• 安全技术 • 上一篇    下一篇

Otway-Rees协议并行攻击的SG逻辑分析

王小锐1,陈连俊2,季庆光3,曹正君2   

  1. (1. 解放军信息工程大学电子技术学院,郑州 450004;2. 总参51所,北京 100072; 3. 中国科学院软件研究所信息安全国家重点实验室,北京 100080)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-03-20 发布日期:2007-03-20

SG Logic Analysis of Otway-Rees Protocol Interleaving Attack

WANG Xiaorui1, CHEN Lianjun2, JI Qingguang3, CAO Zhengjun2   

  1. (1. Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450004; 2. The 51th Institute, General Staff Head Quarters, Beijng 100072; 3. State Key Laboratory of Information Security, Institute of Software, Chinese Academy of Sciences, Beijing 100080)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-03-20 Published:2007-03-20

摘要: 网络信息安全很大程度上取决于密码协议的安全,重放攻击和并行攻击是对密码协议的常见攻击,能够分析并行攻击的形式化分析方法并不多见。该文介绍了一种分析密码协议并行攻击和重放攻击的逻辑方法——SG逻辑,应用它对改进版的Otway-Rees协议进行了分析,找出了BAN类逻辑所不能分析出来的缺陷,针对该缺陷给出了协议的进一步改进,并推证了改进后的协议对SG逻辑的分析是安全的。

关键词: SG逻辑, 并行攻击, Otway-Rees协议, 安全性分析

Abstract: The security of network relies to a great extend on the security of cryptographic protocol, while interleaving attack and replaying attack are very common in everyday time, and there are little methods for analyzing this inaccuracies. This paper introduces a method for dealing with this problem, which is called SG logic. It shows the syntax and the semantic of SG logic in a great detail, finds the fault of Otway-Rees protocol, and gives a method to improve it. At last, it proves that the improved protocol is secure under the given attack.

Key words: SG logic, Interleaving attack, Otway-Rees protocol, Security analysis