欢迎来到天天文库
浏览记录
ID:45783748
大小:183.36 KB
页数:84页
时间:2019-11-17
《基于进程演算的SSL安全协议分析》由会员上传分享,免费在线阅读,更多相关内容在工程资料-天天文库。
1、上海交通大学硕士学位论文基于进程演算的SSL安全协议分析姓名:衷国涛申请学位级别:硕士专业:计算机软件与理论指导教师:傅育熙20050101如何基于Spi演算对安全协议进行分析基于此本文针对SSL3.0安全协议握手过程中的三种认证模式分别建立了Spi演算形式化模型详细分析了SSL安全协议的握手过程论证了SSL3.0安全协议的认证性并且针对各种攻击本文结合形式化模型分析了SSL协议是如何抵御攻击的最终本文根据基于Spi演算的形式化模型找到了SSL握手协议中存在的冗余并提出了对SSL协议改进对以后的研究进行了展望本文基于
2、进程演算对SSL安全协议进行的形式化分析有助丁对SSL安全协议的深入理解为SSL安全协议的设计和改进提供了坚实的基础并且对于安全协议的研究具有一定的借鉴意义关键词进程演算Spi演算安全协议SSLCSPTHEANALYSISOFSSLSECURITYPROTOCOLBASEDONPROCESSALGEBRAABSTRACTWiththedevelopmentofcomputernetwork,especiallyInternettechnology,thenetworksecurityturnsouttobemorea
3、ndmoreimportant.Thesecurityprotocolisanimportantcomponentofnetworksecurity,whichhasanimportanteffectonthesecurityofnetworkapplicationsystem.Themajoraimofsecurityprotocolistoprovidetheidentityauthenticationandthekeyassignmentforcommunicationentities.Theresearchs
4、howsthatmanysecurityprotocols,whicharedeemedtobeverysecureatthebeginning,haveseriousvulnerabilities,suchas,Needham-SchroederprotocolCCITTX.509protocol.Therunningofsecurityprotocolisalwaysinsomeunsafeenvironment,whoseerrorhardlycanbecompletelyfoundmanually・Witht
5、heaidoftheanalysisbasedonformalmethods,wecanaccuratelydescribethesecurityprotocol,analyzeandverifythesecurityprotocol,checkthevulnerabilityandredundancyofsecurityprotocol.Nowtheformalizedanalysisandverificationofsecurityprotocolhasbecomearesearchfocusofnetworks
6、ecurity・Processalgebraappliesalgebraicmethodstothestudyofconcurrentsystems.Sinceitsideaisverysimpleandfunctionisverystrong,includingcommunicationbeingitsbasicidea,processalgebracanwelldescribethebehaviorofentities,whichusetheinformationexchangetointeract.Thedes
7、criptionusedbyprocessalgebraisveryclosetotheoriginalmeaningofprotocol.Nowtheformalizedanalysisandverificationofsecurityprotocolbasedonprocessalgebrahasbecomeanimportantdomainintheformalizedresearchofsecurityprotocol.SSL(SecureSocketLayer)isissuedbyNETSCAPECompa
8、nyin1994,whichisusedtoencryptioncommunicationbetweenclientandserver.Nowtheversionis3.0.SSLisbetweentheapplicationlayerandtransportlayer・Beforetheapplicationlayertransmitting
此文档下载收益归作者所有