Contents
xiii
5.2 Threats and Security Requirements . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 84
5.2.1 Assets . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 84
5.2.2 Threats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 85
5.3 Cryptographic Protocols for eIDs . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 86
5.3.1 Preventing eID Forgeries .. . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 86
5.3.2 Enforcing Owner’s Consent . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 88
5.3.3 EID Authentication and Preventing Cloning . . . . . . . . . . . . . 90
5.3.4 Authenticating the Terminal and Its Rights . . . . . . . . . . . . . . . 92
5.3.5 Proof of Interaction .. . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 92
5.3.6 Passive Tracing . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 92
5.3.7 Eavesdropping . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 93
5.4 PKI .. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 94
5.5 Challenges for eID Systems . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 94
5.6 Future Directions .. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 96
6 Ultra-lightweight Authentication . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 99
Xavier Carpent, Paolo D’Arco, and Roberto De Prisco
6.1 Introduction .. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 99
6.1.1 A Fully Connected World of Small Devices . . . . . . . . . . . . . . 99
6.1.2 Authentication: Protocol Classification and
Physical Constraints . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 100
6.1.3 Design Challenges .. . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 101
6.1.4 Organization of the Chapter .. . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 102
6.2 Ultra-lightweight Authentication Protocols .. . . .. . . . . . . . . . . . . . . . . . . . 102
6.3 Weaknesses and Pitfalls . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 106
6.3.1 Poor Diffusion and Linearity .. . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 106
6.3.2 Poor Message Composition . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 107
6.3.3 Biased Output .. . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 107
6.3.4 Rotations . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 108
6.3.5 Vulnerability to Knowledge Accumulation . . . . . . . . . . . . . . . 108
6.3.6 Dubious Proofs of Security: Randomness Tests
and Automated Provers.. . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 109
6.4 Towards a Sound Approach .. . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 110
6.4.1 State of the Literature . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 110
6.4.2 Promising Avenues . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 110
6.4.3 The Reductionist Approach . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 111
6.5 Conclusions .. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 112
7 From Relay Attacks to Distance-Bounding Protocols . . . . . . . . . . . . . . . . . . 113
Gildas Avoine, Ioana Boureanu, David Gérault, Gerhard P. Hancke,
Pascal Lafourcade, and Cristina Onete
7.1 An Introduction to Relay Attacks and Distance Bounding .. . . . . . . . 113
7.1.1 Relay Attacks . . . . . . . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 114
7.1.2 Distance Bounding . . . . . . . . . . . . . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 114
7.1.3 Other Relay-Countermeasures . . . . . . . . .. . . . . . . . . . . . . . . . . . . . 115
Précédent

- 11/268

Suivant