期刊文献+

3GPP认证与密钥协商协议安全性分析 被引量:17

Security Analysis of 3GPP Authentication and Key Agreement Protocol
下载PDF
导出
摘要 通用移动通信系统采用3GPP认证与密钥协商协议作为其安全框架,该协议对GSM存在的安全隐患作了有效的改进.对3GPP认证与密钥协商协议进行安全性研究,分析其容易遭受4种类型攻击方式.为了解决上述存在的安全隐患,提出在位置更新与位置不变两种情况下的基于公钥密码学的认证与密钥协商协议,采用形式化的分析方式证明了所提出算法的安全性,并将该协议与已有协议在安全性方面进行了比较.结果显示,所提出的协议算法能够极大地增强3GPP认证与密钥协商协议的安全性. The Universal Mobile Telecommunication System (UMTS) adopts 3GPP authentication and key agreement (3GPP AKA) protocol as its security framework, and this protocol has made effective improvements on the hidden security problems of GSM (global system for mobile communications). This paper investigates into the security of the 3GPP authentication and key agreement protocol, and analyzes four types of attacks to which it is vulnerable. To solve the security problems mentioned above, it presents an efficient authentication and key agreement protocol, which is based on public key cryptography, under the circumstances of location updating and location immovability, adopts formal analysis to prove the security of two protocols proposed, and compares it with other protocols from the aspect of security. The results show that this proposed protocol can significantly enhance the security of 3GPP AKA protocol.
出处 《软件学报》 EI CSCD 北大核心 2010年第7期1768-1782,共15页 Journal of Software
基金 国家自然科学基金Nos.90718001 60821001 国家高技术研究发展计划(863)No.2007AA01Z430~~
关键词 认证 密钥协商 3G 无线安全 网络安全 authentication key agreement third-generation wireless security network security
  • 相关文献

参考文献5

二级参考文献32

  • 1卿斯汉.认证协议的形式化分析[J].软件学报,1996,7(A00):107-114. 被引量:7
  • 2[1]3G TS 33. 102 v4.1.0-2001,3rd, Generation partnership project; technical specification group services and system aspects, 3G security; security architecture[S].
  • 3[2]ETSI/SAGE specification,v1.0-1999,Specification of 3GPP confidentiality and integrity algrithm,part 1:f8 and f9 specification[S].
  • 4[3]ETSI/SAGE specification,v1.0-1999,Specification of 3GPP confidentiality and integrity algrithm,part 2:KASUMI specification[S].
  • 5[4]ETSI/SAGE specification,v1.0-2000,Specification of the MILENAGE algorithm set: an example algorithm set for the 3GPP authentication and key generation functions, f1, f1*, f2, f3, f4, f5 and f5*,document 1: algorithm specification[S].
  • 6[5]Sarvar Patel,Zulfikar Ramzan. Use of SHA-1 for AKA f0-f5[Z],Yokohama,Japan:3GPP TSG SA WG3 security-S3#13 S3-000315, 2000.
  • 7[6]3G TS 33. 105,v3.8.0-2001,3rd. Generation partnership project; technical specification group services and system aspects; 3G security; cryptographic algorithm requirements[S].
  • 8[7]ISO/IEC 9798-4-1999,Information technology-security techniques-entity authentication-part 4:Mechanisms using a cryptographic check function[S].
  • 9[1]3GPP TS 33. 102.3G securiy: security. [ DB/OL]. http://ftp. 3gpp. org/Specs. 2002,10.
  • 10[2]Miclael Walker. On the security of 3Gpp etworks[ DB/OL].http://www. esat. kuleuven. ac. Be/cosic/eurocrypt 2000.

共引文献22

同被引文献118

引证文献17

二级引证文献50

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部