Information Security Applications: 7th International

By Wei Gao, Guilin Wang, Xueli Wang, Dongqing Xie (auth.), Jae Kwang Lee, Okyeon Yi, Moti Yung (eds.)

This booklet constitutes the refereed court cases of the seventh foreign Workshop on details defense functions, WISA 2006, held in Jeju Island, Korea in August 2006.

The 30 revised complete papers awarded have been conscientiously chosen in the course of rounds of reviewing and development from 146 submissions. The papers are equipped in topical sections on public key crypto functions and virus safeguard, cyber indication and intrusion detection, biometrics and protection belief administration, safe software program and platforms, clever playing cards and safe undefined, cellular safeguard, DRM, details hiding, ubiquitous computing safeguard, P2P safety, pre-authentication for speedy handoff in instant mesh networks together with cellular APs.

The insider attack [13] The weak password P WSi used in our proposed scheme is only for protecting the corresponding sensor node from being installed by illegal persons. If an installer thinks this password protecting function is not useful, he can disable this function. If an installer uses P WSi to register in other servers for his convenience, the insider of the servers can not impersonate the user to access other servers if the insiders of these servers do not have the corresponding secret tokens.

Since the nonce N2 is not chosen by RC, for checking the freshness of the nonce N2 in practical implementation, RC can keep a recently used nonces table for each base station. Since this phase only does shared keys inquiry, the replay of the older message only causes RC to resent an additional encrypted message back to Bk . Upon receiving the message in Step 3, Bk decrypts the message Eδk (μi,k , h( IDSi ||IDBk ||KR||N2 ||μi,k )) and checks if the nonce N2 is in it for freshness checking and the verification tag h(IDSi ||IDBk ||KR||N2 ||μi,k ) is valid.

Juang Table 1. Efficiency comparison between our scheme and other related schemes Our scheme Perrig et al. [22] Huang et al. [9] Chan et al. [5] √ E1 320 bits 128 bits 768 bits ( n − 1)*256 bits √ E2 128 bits n*128 bits 1632 bits ( n − 1)*256 bits E3 1 Hash None 2 EC M+1 INV+2 MUL None E4 None None 1 EC M+1 INV+3 MUL None E5 2 Sym + 3 Hash None N/A 6 Sym + 6 Hash E6 6 Sym + 7 Hash 4 Sym + 6 Hash N/A 6 Sym + 6 Hash E7 4 Sym + 7 Hash 4 Sym + 6 Hash N/A 6 Sym + 6 Hash E8 4 Sym + 7 Hash N/A 1 SQR+ 6 EC M+1 MUL N/A E9 512 bits 736 bits N/A 1120 bits E10 512 bits N/A 3682 bits N/A E1: Memory needed in a sensor node for cryptographic parameters E2: Memory needed in the base station for cryptographic parameters E3: Computation cost of the registration for a sensor node E4: Computation cost of the registration for a base station E5: Computation cost of the shared key distribution between a sensor node and the base station E6: Computation cost of the shared key distribution between two sensor nodes E7: Computation cost of authentication and key agreement between two nodes E8: Computation cost of authentication and key agreement between a node and a base station E9: Communication Cost of authenticaion and key agreement between two nodes E10: Communication Cost of authenticaion and key agreement between a node and a base station Hash: Hashing operation EC M: Mutiplication operation over an elliptic curve INV: Inversion operation Sym: Symmetric encryption or decryption SQR: Sqaure root operation N/A: Not available √ key pair and the implicit certificate is 768 bits.

