北京邮电大学学报

  • EI核心期刊

北京邮电大学学报 ›› 2015, Vol. 38 ›› Issue (s1): 87-91.doi: 10.13190/j.jbupt.2015.s1.020

• 研究报告 • 上一篇    下一篇

UMTS AKA机制中序列号安全性分析

贾其兰1,2,3, 白媛1,2,3, 王倩1,2,3, 张会兵2   

  1. 1. 天津理工大学 计算机与通信工程学院, 天津 300384;
    2. 桂林电子科技大学 广西可信软件重点实验室, 广西 桂林 541004;
    3. 天津理工大学 通信器件与技术教育部工程研究中心, 天津 300384
  • 收稿日期:2014-07-27 出版日期:2015-06-28 发布日期:2015-06-28
  • 作者简介:白 媛(1971—), 女, 副教授, 硕士生导师, E-mail: snowbaiyuan@163.com.
  • 基金资助:

    天津市科技创新专项资金项目(10FDZDGX00400); 广西可信软件重点实验室研究课题项目(kx201332); 国家自然科学基金项目(61272450)

Research on SQN's Security in UMTS AKA

JIA Qi-lan1,2,3, BAI Yuan1,2,3, WANG Qian1,2,3, ZHANG Hui-bing2   

  1. 1. School of Computer and Communication Engineering, Tianjin University of Technology, Tianjin 300384, China;
    2. Guangxi Key Laboratory of Trusted Software, Guilin University of Electronic Technology, Guangxi Guilin 541004, China;
    3. Engineering Research Center of Communication Devices and Technology, Ministry of Education, Tianjin University of Technology, Tianjin 300384, China
  • Received:2014-07-27 Online:2015-06-28 Published:2015-06-28

摘要:

对认证与密钥协商协议(UMTS AKA)中无和有序列号SQN进行了3种攻击场景模拟并得到结论:SQN的使用不能有效抵抗重放攻击. 基于此,进一步分析并仿真了使用一次性随机数抵抗重放攻击的3种改进协议,结果表明:AP-AKA和基于公钥密码学的AKA能够有效抵抗重放攻击,但是AP-AKA增加了实体的存储和计算资源,基于公钥密码学的AKA增加了算法的复杂性,而S-AKA只能部分抵抗重放攻击.

关键词: 认证与密钥协商, 重放攻击, 序列号, 一次性随机数

Abstract:

Three types of attacks' scenarios were described when there exists or not sequence number (SQN) in UMTS AKA. Analysis shows that the use of SQN cannot resist replay attacks effectively. Based on that, three new protocols using one-time random number were further analyzed and simulated to resist replay attacks. It is shown that AP-AKA and AKA based on public key cryptography can effectively against replay attacks. However, AP-AKA will add storage and computing resources of entities and AKA based on public key cryptography promotes the complexity of algorithm, but S-AKA only keeps against replay attacks partially.

Key words: authentication and key agreement, replay attack, sequence number, one-time rand number

中图分类号: