首页> 外文会议>Australasian conference on Computer science >Cross-layer verification of type flaw attacks on security protocols
【24h】

Cross-layer verification of type flaw attacks on security protocols

机译:安全协议类型缺陷攻击的交叉层验证

获取原文

摘要

Security protocols are often specified at the application layer; however, application layer specifications give little detail regarding message data structures at the presentation layer upon which some implementation-dependent attacks rely. In this paper we present an approach to verifying security protocols in which both the application and presentation layers are modelled. Using the Group Domain of Interpretation protocol as an example, our application layer specification of the protocol is used as input to the AVISPA model checking tool for analysis. Two type flaw attacks are found via model checking which are then verified against the corresponding presentation layer specification, thus identifying the minimal requirements to prevent the attacks.

机译:>安全协议通常在应用层上指定;但是,应用层规范对呈现层的消息数据结构很少详细介绍了一些依赖于实现的依赖攻击。在本文中,我们提出了一种验证安全协议的方法,其中建模了应用程序和演示层。使用“解释协议”的组域作为示例,我们的应用程序层规范用作Avispa模型检查工具的输入进行分析。通过模型检查找到两种类型的缺陷攻击,然后根据相应的演示层规范验证,从而识别防止攻击的最小要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号