Attacks on Authentication Protocols with Compromised Certificates and How to Fix them (特集 情報セキュリティの理論と応用)
スポンサーリンク
概要
- 論文の詳細を見る
The security of authentication protocols based on public key cryptography depends on the validity and freshness of the certificate. It is usually assumed that a well deployed Public Key Infrastructure (PKI) can guarantee the validity and freshness of certificates through mechanisms such as Certificate Revocation List (CRL) or Online Certificate Status Protocol. In reality, such a guarantee is not always assured. This paper analyzes the security of public key authentication protocols in various situations with compromised certificates. A particular type of attack, namely the "ex-employee attack, " against the "named-server, anonymousclient" mode of the SSL/TLS handshake protocol is described, as well as a modified version of the SSL/TLS handshake protocol that can prevent the "ex-employee attack." Methods for analyzing these protocols are also presented.
- 一般社団法人情報処理学会の論文
- 2000-08-15
著者
-
Wen W
Information Media Center Research-education Organization For Information Science And Technology Scie
-
SAITO Takamichi
Department of Information Sciences, Faculty of Science and Technology, Science University of Tokyo
-
WEN Wu
Information Media Center, Research-Education Organization for Information Science and Technology, Sc
-
MIZOGUCHI Fumio
Department of Information Sciences, Faculty of Science and Technology, Science University of Tokyo
-
Mizoguchi F
Department Of Information Sciences Faculty Of Science And Technology Science University Of Tokyo
-
Saito Takamichi
Department Of Information Sciences Faculty Of Science And Technology Science University Of Tokyo
-
Wen Wu
Information Media Center Research-education Organization For Information Science And Technology Scie
-
Wen Wu
東京理科大学 情報メディアセンター
関連論文
- Automatic Verification System for Authentication Protocols
- Attacks on Authentication Protocols with Compromised Certificates and How to Fix them (特集 情報セキュリティの理論と応用)
- Infrarenal Abdominal Aortic Aneurysm Complicated by Persistent Endotension After Endovascular Repair : Report of a Case
- 認証プロトコルの完全性を自動検証するシステム : 情報セキュリティ基礎
- パラメタを導入したBAN Logicによる認証プロトコルの検証
- 認証プロトコルの検証ツール
- Access Control by SPKI Certificate
- 73 RELATIONSHIP BETWEEN GHRELIN GENE POLYMORPHISMS AND BLOOD LEVELS OF IGF-I IN CHILDREN WITH IDIOPATHIC SHORT STATURE
- 92 A CASE OF PYCNODYSOSTOSIS PRESENTlNG WITH SHORT STATURE.
- 142 A CASE WITH AUTOIMMUNE POLYGLANDULAR SYNDROME SUSPECTED AFTER DRUG INDUCED ALLERGIC ANGITIS
- 139 A GIRL WITH HYPERGONADOTROPIC HYPOGONADISM COMPLICATED COLON CANCER