DocumentCode :
2017465
Title :
Automatic implementation system of security protocols based on formal description techniques
Author :
Mengual, L. ; Barcia, N. ; Jiménez, E. ; Menasalvas, E. ; Setién, J. ; Yaguez, J.
Author_Institution :
Fac. de Inf., Univ. Politecnica de Madrid, Spain
fYear :
2002
fDate :
2002
Firstpage :
355
Lastpage :
360
Abstract :
We present an automatic implementation system of security protocols based in formal description techniques. A sufficiently complete and concise formal specification that has allowed us to define the state machine that corresponds to a security protocol has been designed to achieve our goals. This formal specification makes it possible to incorporate in a flexible way the security mechanisms and functions (random numbers generation, timestamps, symmetric-key encryption, public-key cryptography, etc). Our solution implies the incorporation of an additional security layer LEI (Logical Element of Implementation) in the TCP/IP architecture. This additional layer be able both to interpret and to implement any security protocol from its formal specification. Our system provides an applications programming interface (API) for the development of distributed applications in the Internet like the e-commerce, bank transfers, network management or distribution information services that makes transparent to them the problem of security in the communications.
Keywords :
Internet; application program interfaces; banking; computer network management; electronic commerce; formal specification; formal verification; information services; public key cryptography; transport protocols; API; Internet; TCP/IP architecture; applications programming interface; automatic implementation system; bank transfers; communications security; distributed applications; distribution information services; e-commerce; formal description techniques; formal specification; logical element of implementation; network management; public-key cryptography; random numbers generation; security functions; security layer; security mechanisms; security protocols; state machine; symmetric-key encryption; timestamps; Communication system security; Cryptographic protocols; Formal specifications; IP networks; Information management; Information security; Public key cryptography; Random number generation; TCPIP; Web and internet services;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computers and Communications, 2002. Proceedings. ISCC 2002. Seventh International Symposium on
ISSN :
1530-1346
Print_ISBN :
0-7695-1671-8
Type :
conf
DOI :
10.1109/ISCC.2002.1021701
Filename :
1021701
Link To Document :
بازگشت