A LOGIC OF AUTHENTICATION

被引:197
作者
BURROWS, M [1 ]
ABADI, M [1 ]
NEEDHAM, R [1 ]
机构
[1] UNIV CAMBRIDGE,COMP LAB,CAMBRIDGE CB2 3QG,ENGLAND
来源
ACM TRANSACTIONS ON COMPUTER SYSTEMS | 1990年 / 8卷 / 01期
关键词
D O I
10.1145/77648.77649
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Authentication protocols are the basis of security in many distributed systems, and it is therefore essential to ensure that these protocols function correctly. Unfortunately, their design has been extremely error prone. Most of the protocols found in the literature contain redundancies or security flaws. A simple logic has allowed us to describe the beliefs of trustworthy parties involved in authentication protocols and the evolution of these beliefs as a consequence of communication. We have been able to explain a variety of authentication protocols formally, to discover subtleties and errors in them, and to suggest improvements. In this paper we present the logic and then give the results of our analysis of four published protocols, chosen either because of their practical importance or because they serve to illustrate our method. © 1990, ACM. All rights reserved.
引用
收藏
页码:18 / 36
页数:19
相关论文
共 19 条