供稿: 王国伟;贾宗璞;彭维平 | 时间: 2018-11-14 | 次数: |
作者单位:河南理工大学计算机学院
摘要:针对采用接入表方法的无后台数据库的无线射频识别(Radio Frequency Identification,RFID)认证协议存在的安全威胁和效率不足,提出了一种改进的无后台数据库RFID双向认证协议。协议基于Hash函数,通过伪随机数实现随机检索标识的动态更新和同步,并结合标签静态密钥降低阅读器和标签的计算复杂度以及标签的存储容量。BAN逻辑形式化安全证明、安全性能分析、效率分析表明,协议可以弥补同类RFID认证协议存在的机密性、拒绝服务以及去同步化等安全威胁,阅读器具有常数级的计算复杂度,标签具有更少的存储容量,适用于标签数量庞大的无后台数据库RFID系统。
基金:河南省科技攻关项目(132102210123);河南省教育厅重大科技攻关项目(13A520321);
关键词:无线射频识别;认证协议;无后台数据库;BAN逻辑;Hash函数;
DOI:10.16186/j.cnki.1673-9787.2016.03.019
分类号:TP391.44
Abstract:In order to solve the problems about securities and efficiencies that emerged in access list based serverless RFID authentication protocols,an improved mutual RFID authentication protocol is proposed. Based on Hash cryptography,the protocol uses a method of retrieval flag dynamic updating and synchronizing that realized by pseudorandom number and a method of static key of tag to reduce the reader computational complexity and the tag storage capacity. The BAN logic proof,analysis of securities and efficiencies show that the protocol can make up for the security deficiencies about confidentiality,denial of service,de-synchronization of similar RIFD protocols,and the reader has constant level of computational complexity,the tag has fewer storage capacity,which can be applied in serverless RFID systems with huge amount of tags.