| Literature DB >> 25105163 |
Abstract
The security of protocol implementation is important and hard to be verified. Since the penetration testing is usually based on the experience of the security tester and the specific protocol specifications, a formal and automatic verification method is always required. In this paper, we propose an extended model of IOLTS to describe the legal roles and intruders of security protocol implementations, and then combine them together to generate the suitable test cases to verify the security of protocol implementation.Entities:
Mesh:
Year: 2014 PMID: 25105163 PMCID: PMC4106171 DOI: 10.1155/2014/632154
Source DB: PubMed Journal: ScientificWorldJournal ISSN: 1537-744X
Figure 1SE-LTS for NSPK receiver.
Figure 2Glued security extension graph of NSPK.
Figure 3Intruder model of NSPK.
Figure 4Intruder contained model, NSPK.
Algorithm 1Test generation algorithm.
Some security test cases for NSPK protocol.
| Test 1 | ?Dest, !Ask, ?Ask, ?sid, modify, !sid', ?rid, forward, !rid, ?cipher, forward, !cip, !Ask', ?Ask, ?sender, |
|
| |
| Test 2 | ?Dest, !Ask, ?Ask, ?sid, forward, !sid', ?rid, forward, !rid, ?cipher, forward, !cip, !Ask', ?Ask, ?sender, |
|
| |
| Test 3 | ?Dest, !Ask, ?Ask, ?sid, forward, !sid, ?rid, forward, !rid, ?cipher, forward, !cip, !Ask, ?Ask, ?sender, |
|
| |
| Test 4 | ?Dest, !Ask, ?Ask, ?sid, modify, !sid', ?rid, forward, !rid, ?cipher, forward, !cip, !Ask', ?Ask, ?sender, |
|
| |
| Test 5 | ?Dest, !Ask, ?Ask, ?sid, forward, !sid, ?rid, forward, !rid, ?cipher, forward, !cip, !Ask, ?Ask, ?sender, |