西安电子科技大学学报 ›› 2023, Vol. 50 ›› Issue (1): 177-191.doi: 10.19665/j.issn1001-2400.2023.01.020
收稿日期:
2022-03-31
出版日期:
2023-02-20
发布日期:
2023-03-21
通讯作者:
范文兵(1969—),男,教授,博士,E-mail:作者简介:
艾璐琳(1998—),女,郑州大学硕士研究生,E-mail:基金资助:
AI Lulin(),CHANG Zhengtai(
),FAN Wenbing(
),KONG Dehan(
)
Received:
2022-03-31
Online:
2023-02-20
Published:
2023-03-21
摘要:
针对医药系统中药品和说明书同时认证的应用需求,提出一种快速双标签身份认证方案。该方案引入云服务器和物理不可克隆函数,确保了射频识别系统的可扩展性和标签的不可克隆性。针对传统射频识别系统逐一认证双标签效率较低的问题,提出一种双标签响应合并流程;针对物理不可克隆函数引发的系统错误认证问题,计算了物理不可克隆函数响应的最佳认证阈值,以降低系统的认证错误率;针对云服务器的不可信问题,提出3种超轻量级位流函数以实现两种加密机制,从而保护前向信道免受云服务器隐私泄露的威胁。安全分析表明,快速双标签身份认证协议可满足标签匿名性和不可追踪性,并能有效地抵抗克隆攻击、去同步化攻击、重放攻击等恶意攻击。此外,使用BAN逻辑分析和AVISPA工具,进一步验证了协议的安全性。与近期的认证协议相比,快速双标签身份认证协议的服务器搜索耗时最短,在满足各项安全属性的同时,以近似单标签的资源开销实现了对双标签的快速认证,适用于资源受限的大规模双标签认证场景。
中图分类号:
艾璐琳, 常正泰, 范文兵, 孔德涵. 采用云和PUF的轻量级RFID双标签认证协议[J]. 西安电子科技大学学报, 2023, 50(1): 177-191.
AI Lulin, CHANG Zhengtai, FAN Wenbing, KONG Dehan. Lightweight RFID dual-tag authentication protocol using cloud and PUF[J]. Journal of Xidian University, 2023, 50(1): 177-191.
表2
协议中的符号定义"
符号 | 含义 |
---|---|
I | 第j个标签对的组标识符/阅读器身份标识符 |
标签x(x=1,2)/阅读器/云服务器产生的随机数 | |
KRS | 云服务器与阅读器之间的共享密钥 |
p,q,n | 两个大素数和两者的乘积(n至少是512位) |
PRNG | 伪随机数发生器 |
APUF | 仲裁器物理不可克隆函数 |
SCR | 超轻量级位流加密函数 |
y | 阅读器密钥 |
阅读器密钥前/后轮的加密值 | |
Cg | 标签x(x=1,2)存储的激励值 |
Rgx | 标签x(x=1,2)内嵌APUF产生的惟一响应 |
标签x(x=1,2)惟一响应的前/后轮加密值 | |
⊕/mod | 异或运算/取余运算 |
FHD/τ | 分数汉明距离运算/认证阈值 |
表6
不同协议的代价对比"
协议 | 通信代价 | 服务器 搜索代价 | 标签存储 代价 | 标签计算代价 | 阅读器计算代价 |
---|---|---|---|---|---|
文献[ | 17L | O(N) | 2L | 4x+1d+3p+2rot | 1T+13x+1d+5rot+5p+3m+1rm |
文献[ | 12L | O(1) | 2L | 13x+3puf+2h+1c | — |
文献[ | 13L | O(1) | 2L | 2per+3x+1puf+1M+1upa | 1T+2pad+2x+1E |
文献[ | 16L | O(1) | 3L | 9x+1p+3cro | 1W+9x+1p+3cro |
文献[ | 8L | O(N) | L | 7x+2puf+4h+2p+1pad+1upa | 8x+2puf+4h+2p+1upa+1pad |
CP-LRDP | 16L | O(1) | 2L | 1x+2p+2puf+4scr | 6x+2p+3m+1rm+4scr+3uns |
[1] | 施虹宇, 邓伦治, 高岩, 等. 物联网中基于云的RFID认证方案[J]. 贵州师范大学学报:自然科学版, 2022, 40(2):88-95. |
SHI Hongyu, DENG Lunzhi, GAO Yan, et al. Cloud-Based RFID Authentication Scheme for Internet of Things[J]. Journal of Guizhou Normal University:Natural Sciences, 2022, 40(2):88-95. | |
[2] | FAN K, ZHU S, ZHANG K, et al. A Lightweight Authentication Scheme for Cloud-Based RFID Healthcare Systems[J]. IEEE Network, 2019, 33(2):44-49. |
[3] |
KAI F, QI L, KUAN Z, et al. Cloud-Based Lightweight Secure RFID Mutual Authentication Protocol in IoT[J]. Information Sciences, 2020, 527:329-340.
doi: 10.1016/j.ins.2019.08.006 |
[4] | DEVADAS S, SUH E, PARAL S, et al. Design and Implementation of PUF-Based" Unclonable" RFID ICs for Anti-Counterfeiting and Security Applications[C]// 2008 IEEE International Conference on RFID.Piscataway:IEEE, 2008:58-64. |
[5] | RÜHRMAIR U, SEHNKE F, HOLTER J, et al. Modeling Attacks on Physical Unclonable Functions[C]// Proceedings of the 17th ACM Conference on Computer and Communications Security. New York: ACM, 2010:237-249. |
[6] | 王利, 李二霞, 纪宇晨, 等. 基于PUF的抗物理克隆RFID安全认证协议[J]. 信息网络安全, 2020, 20(8):89-97. |
WANG Li, LI Erxia, JI Yuchen, et al. PUF-Based Anti-Physical Cloning RFID Security Authentication Protocol[J]. Netinfo Security, 2020, 20(8):89-97. | |
[7] | YE Q, SUN Z. Lightweight RFID Authentication Protocol for Cloud Services Using PUF Encryption[C/OL].[2021-12-20]. https://ieeexplore.ieee.org/document/9602061. |
[8] |
CHATTERJEE U, GOVINDAN V, SADHUKHAN R, et al. Building PUF Based Authentication and Key Exchange Protocol for IoT without Explicit CRPs in Verifier Database[J]. IEEE Transactions on Dependable and Secure Computing, 2018, 16(3):424-437.
doi: 10.1109/TDSC.8858 |
[9] | SADEGHI A R, VISCONTI I, WACHSMANN C. PUF-Enhanced RFID Security and Privacy[C/OL].[2022-01-20]. https://www.researchgate.net/publication/265986050_PUF-enhanced_RFID_security_and_privac. |
[10] | LIM D, LEE J W, GASSEND B, et al. Extracting Secret Keys from Integrated Circuits[J]. IEEE Transactions on Very Large Scale Integration(VLSI) Systems, 2015, 13(10):1200-1205. |
[11] |
RÜHRMAIR U, SOLTER J, SEHNKE F, et al. PUF Modeling Attacks on Simulated and Silicon Data[J]. IEEE Transactions on Information Forensics and Security, 2013, 8(11):1876-1891.
doi: 10.1109/TIFS.2013.2279798 |
[12] |
GU C, CHANG C H, LIU W, et al. A Modeling Attack Resistant Deception Technique for Securing Lightweight-PUF-Based Authentication[J]. IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems, 2020, 40(6):1183-1196.
doi: 10.1109/TCAD.2020.3036807 |
[13] | MAJZOOBI M, ROSTAMI M, KOUSHANFAR F, et al. Slender PUF Protocol:A Lightweight,Robust,and Secure Authentication by Substring Matching[C]// 2012 IEEE Symposium on Security and Privacy Workshops.Piscataway:IEEE, 2012:33-44. |
[14] |
YU M D, HILLER M, DELVAUX J, et al. A Lockdown Technique to Prevent Machine Learning on PUFs for Lightweight Authentication[J]. IEEE Transactions on Multi-Scale Computing Systems, 2016, 2(3):146-159.
doi: 10.1109/TMSCS.6687315 |
[15] |
GOPE P, LEE J, QUEK T Q S. Lightweight and Practical Anonymous Authentication Protocol for RFID Systems Using Physically Unclonable Functions[J]. IEEE Transactions on Information Forensics and Security, 2018, 13(11):2831-2843.
doi: 10.1109/TIFS.2018.2832849 |
[16] |
CHATTERJEE U, GOVINDAN V, SADHUKHAN R, et al. Building PUF Based Authentication and Key Exchange Protocol for IoT without Explicit CRPs in Verifier Database[J]. IEEE Transactions on Dependable and Secure Computing, 2018, 16(3):424-437.
doi: 10.1109/TDSC.8858 |
[17] | 范美月, 董庆宽, 王蕾, 等. 无 TTP 带权重的多所有者 RFID 标签认证协议[J]. 西安电子科技大学学报, 2021, 48(1):133-140. |
FAN Meiyue, DONG Qingkuan, WANG Lei, et al. TTP-Free Weighted Muti-Owner RFID Tag Authentication Protocol[J]. Journal of Xidian University, 2021, 48(1):133-140. | |
[18] | XIE W, XIE L, ZHANG Q, et al. Cloud-Based RFID Authentication[C]// 2013 IEEE International Conference on RFID.Piscataway:IEEE, 2013:168-175. |
[19] | KUMAR V, AHMAD M, MISHRA D, et al. RSEAP:RFID Based Secure and Efficient Authentication Protocol for Vehicular Cloud Computing[J]. Vehicular Communications, 2019, 11:100213. |
[20] | SAFKHANI M, CAMARA C, PERIS-LOPEZ P, et al. RSEAP2:An Enhanced Version of RSEAP,an RFID Based Authentication Protocol for Vehicular Cloud Computing[J]. Vehicular Communications, 2020, 11:100311. |
[21] |
LIANG W, XIE S, LONG J, et al. A Double PUF-Based RFID Identity Authentication Protocol in Service-Centric Internet of Things Environments[J]. Information Sciences, 2019, 503:129-147.
doi: 10.1016/j.ins.2019.06.047 |
[22] |
黄可可, 刘亚丽, 殷新春. 基于位重排变换的超轻量级 RFID双向认证协议[J]. 计算机应用, 2019, 39(1):118-125.
doi: 10.11772/j.issn.1001-9081.2018071738 |
HUANG Keke, LIU Yali, YIN Xinchun. Ultra-Lightweight RFID Mutual Authentication Protocol Based on Regeneration Transformation[J]. Journal of Computer Applications, 2019, 39(1):118-125.
doi: 10.11772/j.issn.1001-9081.2018071738 |
|
[23] | MUJAHID U, NAJAMULISLAM M, SHAMI M A. RCIA:A New Ultralightweight RFID Authentication Protocol Using Recursive Hash[J]. International Journal of Distributed Sensor Networks, 2015, 11(1):1-8. |
[24] | SAHOO D P, CHAKRABORTY R S, MUKHOPADHYAY D. Towards Ideal Arbiter PUF Design on Xilinx FPGA:A Practitioner's Perspective[C]// 2015 Euromicro Conference on Digital System Design.Piscataway:IEEE, 2015:559-562. |
[25] |
CAO Y, ZHENG W, ZHAO X, et al. An Energy-Efficient Current-Starved Inverter Based Strong Physical Unclonable Function with Enhanced Temperature Stability[J]. IEEE Access, 2019, 7:105287-105297.
doi: 10.1109/Access.6287639 |
[26] | 叶乔. 采用 PUF 的云服务 RFID 系统认证协议的研究[D]. 无锡: 江南大学, 2021. |
[27] |
VIGANÒ L. Automated Security Protocol Analysis With the AVISPA Tool[J]. Electronic Notes in Theoretical Computer Science, 2006, 155:61-86.
doi: 10.1016/j.entcs.2005.11.052 |
[28] |
FAN K, JIANG W, LI H, et al. Lightweight RFID Protocol for Medical Privacy Protection in IoT[J]. IEEE Transactions on Industrial Informatics, 2018, 14(4):1656-1665.
doi: 10.1109/TII.2018.2794996 |
[29] | 李涛, 刘亚丽. 一种基于双PUF的RFID认证协议[J]. 计算机研究与发展, 2021, 58(8):1801-1810. |
LI Tao, LIU Yali. A Double PUF-Based RFID Authentication Protocol[J]. Journal of Computer Research and Development, 2021, 58(8):1801-1810. |
[1] | 汪鹏君,陈佳,张跃军,庄友谊,李乐薇,倪力. 基于路径敏化的多熵源软PUF[J]. 西安电子科技大学学报, 2022, 49(6): 58-66. |
[2] | 范美月,董庆宽,王蕾,杨灿. 无TTP带权重的多所有者RFID标签认证协议[J]. 西安电子科技大学学报, 2021, 48(1): 133-140. |
[3] | 陈博,汪鹏君,李刚. 面向物联网IP核保护的轻量化认证[J]. 西安电子科技大学学报, 2019, 46(5): 62-68. |
[4] | 邢天璋;谢彬彬;杨康;汤战勇;房鼎益. 一种利用无线信号的被动式多目标定位系统[J]. 西安电子科技大学学报, 2018, 45(1): 93-98. |
[5] | 张国栋;刘强;张齐军. 用于FPGA IP保护的低成本高性能PUF设计[J]. 西安电子科技大学学报, 2016, 43(6): 97-102. |
[6] | 于银山;俞晓磊;刘佳玲;赵志敏;汪东华. 利用Fisher矩阵的RFID多标签最优分布检测方法[J]. 西安电子科技大学学报, 2016, 43(2): 108-113. |
[7] | 齐增卫;庄奕琪;李小明;刘伟峰;张岩龙;任小娇. 一种适用于超高频射频识别的温度传感器[J]. J4, 2014, 41(6): 65-70. |
[8] | 陈蕾;史小卫;余剑峰;陈阳. 一种可用于RFID系统中的方向回溯阵列设计[J]. J4, 2014, 41(6): 71-75. |
[9] | 张紫楠;郭渊博;杨奎武;黄惠新;杨占海. 通用可组合认证密钥交换协议[J]. J4, 2014, 41(5): 185-191. |
[10] | 李致金;周杰;乔杰;吴文娟. 自适应多维维分编码RFID防碰撞算法[J]. J4, 2013, 40(6): 162-167+179. |
[11] | 杜永乾;庄奕琪;李小明;景鑫;戴力. 一种新型无源UHF RFID带隙基准电路[J]. J4, 2013, 40(2): 148-152+200. |
[12] | 唐龙飞;庄奕琪;刘伟峰;靳钊. 用于UHF RFID标签的低功耗BLF产生电路[J]. J4, 2011, 38(5): 152-158+164. |
[13] | 刘伟峰;庄奕琪;周俊潮;唐龙飞;靳钊. 一种用于UHF RFID标签的高稳定度时钟电路[J]. J4, 2011, 38(4): 71-76. |
[14] | 刘伟峰;庄奕琪;唐龙飞;靳钊. 一种全新的无源超高频标签芯片架构设计[J]. J4, 2010, 37(6): 1092-1097. |
[15] | 魏峰1;史小卫1;陈蕾2;黄丘林1. 一种改进型微带线定向耦合器及其应用 [J]. J4, 2009, 36(2): 281-284. |
|