计算机应用 ›› 2012, Vol. 32 ›› Issue (07): 2010-2014.DOI: 10.3724/SP.J.1087.2012.02010

• 信息安全 • 上一篇    下一篇

轻量级的无线射频识别安全认证协议

张顺,陈海进   

  1. 专用集成电路设计重点实验室(南通大学),江苏 南通226019
  • 收稿日期:2011-12-29 修回日期:2012-02-11 发布日期:2012-07-05 出版日期:2012-07-01
  • 通讯作者: 陈海进
  • 作者简介:张顺(1986-),男,江苏扬州人,硕士研究生,主要研究方向:射频识别、信息安全;陈海进(1972-),男,江苏南通人,副教授,博士,主要研究方向:RFID应用与信息安全。
  • 基金资助:

    江苏省交通厅基金资助项目(09X12);江苏省普通高校研究生科研创新计划项目(CXZZ11_0638);南通大学研究生科技创新计划项目(YKC11059)

Lightweight security authentication protocol for radio frequency identification

ZHANG Shun,CHEN Hai-jin   

  1. Key Laboratory of ASIC Design (Nantong University), Nantong Jiangsu 226019, China
  • Received:2011-12-29 Revised:2012-02-11 Online:2012-07-05 Published:2012-07-01
  • Contact: CHEN Hai-jin

摘要: 针对现有无线射频识别(RFID)认证协议存在的安全缺陷,提出了一种新的轻量级RFID安全认证协议,并基于GNY逻辑给出了形式化证明。协议采用阅读器双重认证及预认证阶段刷新密钥的方法,通过在标签中添加保护密钥同步的恶意攻击标记Tm,解决了当前协议中存在的可扩展性欠佳、标签密钥更新失败导致位置跟踪和非法更新标签/服务器内部密钥造成拒绝服务(DoS)等问题,可抵抗重传、标签/阅读器假冒和通信量分析等多种恶意攻击,尤其防范来自位置隐私泄露和拒绝服务的安全威胁。分析结果表明,所提协议具有低成本、安全性高、计算复杂度低等特点,适合于标签数目较多的RFID系统。

关键词: 无线射频识别, 隐私保护, 认证协议, 可扩展性, GNY逻辑

Abstract: With regard to the security vulnerabilities of the existing Radio Frequency Identification (RFID) authentication protocols, a new lightweight security protocol for RFID was proposed. The formal proof of the correctness of the proposed authentication protocol was given based on GNY logic. The proposed scheme adopted the method of reader dual-authentication and key refreshing during reader pre-authentication phase, which achieved the anti-desynchronization requirement by adding flag Tm of malicious attacks into the tag. The protocol solved the security and privacy problems of poor scalability, location tracking due to failure of renewing the key of tag, and Denial of Service (DoS) resulting from illegal updating inner keys of tag/server in the existed schemes. It efficiently resisted several possible attacks including replay, tag/reader impersonation, traffic analysis, location tracking and desynchronization. The analytical results show that the proposed protocol is of low-cost, good security and limited computational complexity, which fits for RFID system when the tags number is large.

Key words: Radio Frequency Identification (RFID), privacy preserving, authentication protocol, scalability, GNY logic

中图分类号: