• DocumentCode
    1616071
  • Title

    An NP decision procedure for protocol insecurity with XOR

  • Author

    Chevalier, Yannick ; Kusters, Ralf ; Rusinowitch, Michael ; Turuani, Mathieu

  • Author_Institution
    LORIA, INRIA, Nancy, France
  • fYear
    2003
  • Firstpage
    261
  • Lastpage
    270
  • Abstract
    We provide a method for deciding the insecurity of cryptographic protocols in presence of the standard Dolev-Yao intruder (with a finite number of sessions) extended with so-called oracle rules, i.e., deduction rules that satisfy certain conditions. As an instance of this general framework, we ascertain that protocol insecurity is in NP for an intruder that can exploit the properties of the XOR operator. This operator is frequently used in cryptographic protocols but cannot be handled in most protocol models. An immediate consequence of our proof is that checking whether a message can be derived by an intruder (using XOR) is in P. We also apply our framework to an intruder that exploits properties of certain encryption modes such as cipher block chaining (CBC).
  • Keywords
    access protocols; cryptography; message authentication; CBC; Doley-Yao intruder; NP decision procedure; XOR; cipher block chaining; cryptographic protocol; oracle rule; protocol security; Abstracts; Algorithm design and analysis; Authentication; Computer science; Cryptographic protocols; Cryptography; Equations; Joining processes; Logic; Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Logic in Computer Science, 2003. Proceedings. 18th Annual IEEE Symposium on
  • ISSN
    1043-6871
  • Print_ISBN
    0-7695-1884-2
  • Type

    conf

  • DOI
    10.1109/LICS.2003.1210066
  • Filename
    1210066