期刊文献+

一种认证协议防御拒绝服务攻击的设计方法 被引量:11

A New Countermeasure for Protecting Authentication Protocols against Denial of Service Attack
下载PDF
导出
摘要 拒绝服务 (DoS)攻击是一种阻碍授权用户正常获得服务的主动攻击 ,大量认证协议和密钥建立协议存在着不同程度的DoS隐患 .本文提出一种新的解决方法 ,用于无可信第三方认证协议和密钥建立协议防御DoS攻击 ,该方法可动态调整DoS防御的强度 ,并可减少并行会话攻击 ,增强协议的安全性 . Denial of service has become a major security threat in open communications networks.Authentication and key establishment protocols usually are vulnerable to network DoS attacks.This paper presents a new countermeasure to make authentication protocols without trusted third party resistant against DoS attack.By using this method,the strength of resistance can be adjusted dynamically and most parallel session attacks can be prevented.
出处 《电子学报》 EI CAS CSCD 北大核心 2005年第2期288-293,共6页 Acta Electronica Sinica
基金 国家"八六三"高技术研究发展计划基金 (No.2 0 0 2AA1 4 2 1 60 )
关键词 认证协议 密钥建立协议 拒绝服务(DoS) 工作量证明 authentication protocol key establishment protocol denial of service proof of work
  • 相关文献

参考文献12

  • 1卿斯汉.安全协议的设计与逻辑分析[J].软件学报,2003,14(7):1300-1309. 被引量:69
  • 2CCITT Recommendation X.509.The Directory-Authentication Framework.CCITT[S].1988.
  • 3Michael Burrows,Martin Abadi,Roger Needham.A logic of authentication[J].ACM Transactions on Computer Systems,1990,8(1):18-36.
  • 4Colin Anson,Chris Mitchell.Security Defects in the CCITT Recommendation X.509 :The Directory Authentication Framework[J].Computer Communication Review,1990,20(2):30-34.
  • 5Phil Karn,W A Simpson.Photuris:session-key management protocol.RFC 2522[S].IETF Network Working Group,1999.
  • 6Dan Harkins,Dave Carrel.The Internet key exchange (IKE).RFC 2409[S].IETF Network Working Group,1998.
  • 7C Dwork,M Naor.Pricing via processing or combatting junk mail[A].Proc.CRYPTO'92[C].Berlin:Springer,1992.139-147.
  • 8Tuomas Aura,Pekka Nikander,Jussipekka Leiwo.DOS-resistant authentication with client puzzles[A].Proc.of Security Protocols Workshop[C].Berlin:Springer,2000.170-177.
  • 9K Matsuura,H Imai.Modification of internet key exchange resistant against denial-of-Service[A].Pre-Proc.of Internet Workshop 2000 (IWS2000)[C].NSW,Australia,2000.167-174.
  • 10C Meadows.A formal framework and evaluation method for network denial of service[A].Proc.of the 12th IEEE.Computer Security Foundations Workshop[C].Mordano,Italy,1999.4-13.

二级参考文献2

共引文献68

同被引文献53

引证文献11

二级引证文献33

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部