DocumentCode
3034968
Title
A Formal Theory of Key Conjuring
Author
Cortier, Veronique ; Delaune, Stephanie ; Steel, Graham
Author_Institution
CNRS & INRIA, Orsay
fYear
2007
fDate
6-8 July 2007
Firstpage
79
Lastpage
96
Abstract
Key conjuring is the process by which an attacker obtains an unknown, encrypted key by repeatedly calling a cryptographic API function with random values in place of keys. We propose a formalism for detecting computationally feasible key conjuring operations, incorporated into a Dolev-Yao style model of the security API. We show that security in the presence of key conjuring operations is decidable for a particular class of APIs, which includes the key management API of IBM´s common cryptographic architecture (CCA).
Keywords
application program interfaces; security of data; common cryptographic architecture; cryptographic API function; formal theory; key conjuring; Algorithm design and analysis; Computer architecture; Cryptographic protocols; Cryptography; Hardware; Informatics; Secure storage; Security; Steel;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security Foundations Symposium, 2007. CSF '07. 20th IEEE
Conference_Location
Venice
ISSN
1940-1434
Print_ISBN
0-7695-2819-8
Type
conf
DOI
10.1109/CSF.2007.5
Filename
4271642
Link To Document