|
ABSTRACT
We propose a formal framework for the security analysis of on-demand source routing protocols for wireless ad hoc networks. Our approach is based on the well-known simulation paradigm that has been proposed to prove the security of cryptographic protocols. Our main contribution is the application of the simulation-based approach in the context of ad hoc routing. This involves a precise definition of a real-world model, which describes the real operation of the protocol, and an ideal-world model, which captures what the protocol wants to achieve in terms of security. Both models take into account the peculiarities of wireless communications and ad hoc routing. Then, we give a formal definition of routing security in terms of indistinguishability of the two models from the point of view of honest parties. We demonstrate the usefulness of our approach by analyzing two "secure" ad hoc routing protocols, SRP and Ariadne. This analysis leads to the discovery of as yet unknown attacks against both protocols. Finally, we propose a new ad hoc routing protocol and prove it to be secure in our model.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
M. Backes and B. Pfitzmann. A Cryptographically Sound Security Proof of the Needham-Schroeder-Lowe Public-Key Protocol. to appear in IEEE Journal on Selected Areas in Communication .
|
| |
2
|
|
| |
3
|
|
 |
4
|
|
 |
5
|
Mihir Bellare , Ran Canetti , Hugo Krawczyk, A modular approach to the design and analysis of authentication and key exchange protocols (extended abstract), Proceedings of the thirtieth annual ACM symposium on Theory of computing, p.419-428, May 24-26, 1998, Dallas, Texas, United States
[doi> 10.1145/276698.276854]
|
 |
6
|
|
 |
7
|
|
| |
8
|
L. Buttyán and I. Vajda. Towards provable security for ad hoc routing protocols. Techical Report No. 2004/159, http://eprint.iacr.org/, July 2004.
|
| |
9
|
R. Canetti. Studies in Secure Multiparty Computation and Applications. PhD dissertation, Department of Computer Science and Applied Mathematics, Weizmann Institute of Science, June 1995.
|
| |
10
|
|
| |
11
|
Z. Haas, M. Perlman, and P. Samar. The Interzone Routing Protocol (IERP) for ad hoc networks. Internet Draft, IETF MANET Working Group, June 2001.
|
 |
12
|
|
| |
13
|
|
| |
14
|
|
| |
15
|
D. Johnson and D. Maltz. Dynamic source routing in ad hoc wireless networks. In Mobile Computing, edited by Tomasz Imielinski and Hank Korth, Chapter 5, pages 153--181. Kluwer Academic Publisher, 1996.
|
| |
16
|
|
| |
17
|
J. Marshall. An Analysis of the Secure Routing Protocol for mobile ad hoc network route discovery: using intuitive reasoning and formal verification to identify flaws. MSc thesis, Department of Computer Science, Florida State University, April 2003.
|
| |
18
|
S. Micali and P. Rogaway. Secure computation. In Proceedings of Crypto'91, 1991.
|
| |
19
|
P. Papadimitratos and Z. Haas. Secure routing for mobile ad hoc networks. In Proceedings of SCS Communication Networks and Distributed Systems Modelling Simulation Conference (CNDS), 2002.
|
| |
20
|
|
| |
21
|
|
| |
22
|
|
| |
23
|
V. Shoup. On formal models for secure key exchange (version 4), revision of IBM Research Report RZ 3120, November 1999.
|
 |
24
|
|
 |
25
|
|
|