作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (11): 40-41,9.

• 博士论文 • 上一篇    下一篇

一种新的共享密钥安全协议设计方法

华东明1,侯紫峰1,韦 卫2,吴秋新3   

  1. 1. 中国科学院计算技术研究所,北京 100080;2. 联想研究院,北京 100085;3. 北京信息科技大学,北京 100876
  • 出版日期:2006-06-05 发布日期:2006-06-05

A New Design Method of Shared-key Security Protocols

HUA Dongming1, HOU Zifeng1, WEI Wei2, WU Qiuxin3   

  1. 1. Institute of Computing Technology, Chinese Academy of Sciences, Beijing 100080; 2. Institute of Lenovo, Beijing 100085; 3. Beijing University of Information Science & Technology, Beijing 100876
  • Online:2006-06-05 Published:2006-06-05

摘要: 为了设计出具有高安全性的安全协议,提出了一种面向主体的逻辑,可以形式化和系统地设计共享密钥安全协议;根据可以提供的不同安全服务,将密码机制抽象为不同信道,这样在设计安全协议时不必考虑密码机制的实现细节;提出安全协议的转发设计规则,将设计规则作为预防攻击的有效措施;运用该逻辑和设计规则设计了一种新的共享密钥安全协议,该协议能达到相互身份认证和密钥分发目的,并能预防与设计规则相对应的攻击。

关键词: 安全协议, 主体, 逻辑, 信道

Abstract: In order to design highly secure security protocols, an agent-oriented logic is provided, which can be utilized to formally and systematically design shared key security protocols. Cryptographic mechanisms are abstracted to different channels, so that their implementation details need not be considered while security protocols are designed. Design principles of transfer are provided, which are regarded as available measures to prevent attacks. A new shared-key security protocol using the logic and design principles is designed, so as to attain mutual authentication and key distribution together with to prevent attacks that are opposite to design principles.

Key words: Security protocols, Agent, Logic, Channel

中图分类号: