| Zugriffsnummer | 37524 |
| Dokumenttyp | Konferenzartikel |
| Sprache | Englisch |
| Titel | An attack possibility on time synchronization protocols secured with TESLA-like mechanisms |
| Autor(in); Institution |
Sibold, Dieter; Q.4, Informationstechnologie, PTB-Braunschweig
Teichel, Kristof; Q.4, Informationstechnologie, PTB-Braunschweig
Milius, Stefan; Friedrich-Alexander Universität, Theoretical Computer Science, Erlangen-Nürnberg, GERMANY
|
| Quelle/Jahr | Information systems security : 12th international conference:(2016), 3 - 22 |
| Schriftenreihe | Lecture notes in computer science: 10063 |
| ISBN | 978-3-319-49805-8 (print) ; 978-3-319-49806-5 (online) |
| Verlag | Cham: Springer |
| Konferenzangaben | 12th International Conference on Information Systems Security 2016 ; 12th ICISS 2016, Jaipur, 16-20, December, 2016, India |
| Freie Schlagworte | security protocols ; Broadcast ; Time synchronization protocols ; TESLA ; Security analysis ; UPPAAL |
| Zusammenfassung | In network-based broadcast time synchronization, an important security goal is integrity protection linked with source authentication. One technique frequently used to achieve this goal is to secure the communication by means of the TESLA protocol or one of its variants. This paper presents an attack vector usable for time synchronization protocols that protect their broadcast or multicast messages in this manner. The underlying vulnerability results from interactions between timing and security that occur specifically for such protocols. We propose possible countermeasures and evaluate their respective advantages. Furthermore, we discuss our use of the UPPAAL model checker for security analysis and quantification with regard to the attack and countermeasures described, and report on the results obtained. Lastly, we review the susceptibility of three existing cryptographically protected time synchronization protocols to the attack vector discovered. |