Partially Specified Channels: The TLS 1.3 Record Layer without Elision

Partially Specified Channels: The TLS 1.3 Record Layer without Elision
复制标题

部分指定通道:没有省略的 TLS 1.3 记录层

DOI:
10.1145/3243734.3243789
复制
发表时间:
2018
期刊:
Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security
影响因子:
--
通讯作者:
Shrimpton, Thomas
Shrimpton, Thomas
中科院分区:
--
文献类型:
--
作者:
Patton, Christopher;Shrimpton, Thomas

文献摘要

参考文献

被引文献

相似文献

我们推进了基于流的安全信道的研究(Fischlin等人,通过考虑在单个信道上多路复用许多数据流,这是诸如TLS的真实的世界协议的基本特征。我们的处理采用Rogaway和Stegers(CSF '09)的定义视角,它提供了一种优雅的方式来推理标准化文档实际提供的内容:协议的部分规范,允许一组兼容的,完全实现的实现。我们正式部分指定的通道作为组件算法的两方在一个通道上进行通信。每个算法都有一个提供规范细节的预言机;算法抽象出必须显式指定的东西,而预言机抽象出不需要显式指定的东西。我们的安全概念,捕获各种隐私和完整性目标,允许对手响应这些oracle查询;与这些概念相关的安全性意味着通道在最坏情况下(即,对抗性的)规范细节的实现。我们将此框架应用于TLS 13记录的正式处理,并在此过程中表明其安全性关键取决于标准未指定的细节。
We advance the study of secure stream-based channels (Fischlin et al., CRYPTO '15) by considering the multiplexing of many data streams over a single channel, an essential feature of real world protocols such as TLS. Our treatment adopts the definitional perspective of Rogaway and Stegers (CSF '09), which offers an elegant way to reason about what standardizing documents actually provide: a partial specification of a protocol that admits a collection of compliant, fully realized implementations. We formalize partially specified channels as the component algorithms of two parties communicating over a channel. Each algorithm has an oracle that provides specification details ; the algorithms abstract the things that must be explicitly specified, while the oracle abstracts the things that need not be. Our security notions, which capture a variety of privacy and integrity goals, allow the adversary to respond to these oracle queries; security relative to these notions implies that the channel withstands attacks in the presence of worst-case (i.e., adversarial) realizations of the specification details. We apply this framework to a formal treatment of the TLS 13 record and, in doing so, show that its security hinges crucially upon details left unspecified by the standard.
DOI: 10.17487/rfc5116
发表时间: 2008
期刊: RFC
影响因子: --
作者:
D. McGrew
通讯作者: D. McGrew
增强的安全通道和 TLS 1.3 记录层的目标
DOI: 10.1007/978-3-319-26059-4_5
发表时间: 2015
期刊: IACR Cryptol. ePrint Arch.
影响因子: --
作者:
Christian Badertscher;Christian Matt;U. Maurer;P. Rogaway;Björn Tackmann
通讯作者: Björn Tackmann
DOI: --
发表时间: 2013
期刊: Fast Software Encryption Workshop
影响因子: --
作者:
A. Boldyreva;Jean Paul Degabriele;K. Paterson;Martijn Stam
通讯作者: Martijn Stam
过多的 SSH 密码套件
DOI: 10.1145/2976749.2978364
发表时间: 2016
期刊: --
影响因子: --
作者:
Albrecht M
通讯作者: Albrecht M