计算机应用 ›› 2013, Vol. 33 ›› Issue (01): 131-134.DOI: 10.3724/SP.J.1087.2013.00131

• 信息安全 • 上一篇    下一篇

开放式RFID双向认证协议及安全性分析

张楠1,张建华2   

  1. 1. 西南民族大学 计算机科学与技术学院, 成都 610041
    2. 西南民族大学 计算机科学与技术学院西南民族大学 计算机科学与技术学院, 成都 610041
  • 收稿日期:2012-07-23 修回日期:2012-08-28 出版日期:2013-01-01 发布日期:2013-01-09
  • 通讯作者: 张楠
  • 作者简介:张楠(1973-),女,四川眉山人,教授,博士,CCF会员,主要研究方向:网络安全;张建华(1971-),男,四川武胜人,教授,博士,主要研究方向:计算机网络、移动计算。
  • 基金资助:

    国家社会科学基金资助项目(12BTQ056);四川省应用基础研究项目(2012JY0096);西南民族大学中央高校基本科研业务专项(11NZYTH06)

Research and security analysis on open RFID mutual authentication protocol

ZHANG Nan,ZHANG Jianhua   

  1. School of Computer Science and Technology, Southwest University for Nationalities, Chengdu Sichuan 610041, China
  • Received:2012-07-23 Revised:2012-08-28 Online:2013-01-01 Published:2013-01-09
  • Contact: ZHANG Nan

摘要: 针对射频识别(RFID)系统由于资源有限、广播传输等因素而存在的安全缺陷,提出了一种在开放环境中标签和阅读器之间进行双向认证的协议。采用对称加密结合随机数的方法可以很好地协调安全、高效以及成本问题。同时协议不要求阅读器与数据库之间的通信必须是安全的,从而提高了阅读器的移动性和应用范围。通过BAN逻辑对协议进行了形式化分析,证明了所提协议是安全可达的,能够有效避免窃听、追踪和重放等安全威胁。

关键词: 射频识别, 标签, 阅读器, 认证, BAN逻辑

Abstract: Considering that Radio Frequency Identification (RFID) system has many security problems because of limited resource and broadcasting transmission, a new improved mutual authentication protocol was put forward. In the protocol, symmetric encryption combined with the random number method was used. It has advantage in balancing the security, efficiency and cost. The protocol can be applied in an open environment which the transmission security between database and reader is not requested necessary. It can improve the mobility and the application range of the reader. BAN logic was used to do the formal analysis and proved that the proposed protocol is safe and reachable. The proposed protocol can effectively solve the security attacks, such as eavesdropping, tracing and replaying.

Key words: Radio Frequency Identification (RFID), tag, reader, authentication, BAN logic

中图分类号: