摘要
本文提出一种新的基于口令认证的RFID系统安全协议。该方法充分利用RFID低等级标签提供的有限资源:访问口令(PW)、标签的标识码(ID)和伪随机函数等建立RFID系统读写器和标签双向认证的安全协议,对该协议抵抗各种攻击的安全性进行理论分析并对该协议的认证功能进行BAN逻辑的形式化分析。结果表明该协议能够有效抵御在线和离线字典攻击、伪装攻击、重放攻击以及流量分析和跟踪攻击,因而解决了RFID系统的安全问题。
A new security protocol of RFID system is proposed based on password. The scheme makes sufficiently use of the limited resources of RFID system: PW(access password), ID(tag identifier), PRNG(pseudo-random number generator) to create the security protocol of RFID system with mutual authentication between readers and tags. Then performance analysis is given against various security attacks and BAN logic analysis of the security of the protocol. The results demonstrate that the protocol can effectively resist the online and offline dictionary attacks, disguise attacks, replay attacks and the traffic analysis and tracking attacks, thus solves the security problem of RFID system.
出处
《电信科学》
北大核心
2008年第12期44-48,共5页
Telecommunications Science
基金
广东省自然基金资助项目(No.06023131)
中山大学"985"二期基金资助项目(No.90013-3272240)
关键词
无线通信
安全协议
口令
字典攻击
BAN逻辑
wireles communication, security protocol, password, dictionary attack, BAN logic