A logic of authentication
Published 1 November 1989
Michael T. Burrows, M. Abadi, R. Needham
Citations642
Generate an AI Snapshot to get a quick, structured summary of this paper.
Study Snapshot
ObjectiveStudy objective
MethodsResearch methodology
PopulationPopulation studied
Sample sizeSample sizes
OutcomesStudy outcomes here
ResultsStudy results comes here
LimitationsResearch study limitations comes here
A concise AI-generated summary of the paper will appear here once you click Generate AI Snapshot.
Abstract
Authentication protocols are the basis of security in many distributed systems, and it is therefore essential to ensure that these protocols function correctly. Unfortunately, their design has been extremely error prone. Most of the protocols found in the literature contain redundancies or security flaws.
Keywords
Computer Science
IEEE Transactions on Information TheoryNew directions in cryptography
14,441 Citations1976Whitfield Diffie, Martin E. Hellman
Communications of the ACMA method for obtaining digital signatures and public-key cryptosystems
13,142 Citations1983Ronald L. Rivest, Adi Shamir +1 more
Communications of the ACMA method for obtaining digital signatures and public-key cryptosystems
13,083 Citations1978Ronald L. Rivest, Adi Shamir +1 more
An encryption method is presented with the novel property that publicly revealing an encryption key does not thereby reveal the corresponding decryption key, soriers or other secure means are not needed to transmit keys.
IEEE Transactions on Information TheoryOn the security of public key protocols
5,655 Citations1983Danny Dolev, A. Yao
Several models are formulated in which the security of protocols can be discussed precisely, and algorithms and characterizations that can be used to determine protocol security in these models are given.
Communications of the ACMAn axiomatic basis for computer programming
3,886 Citations1969C. A. R. Hoare
An attempt is made to explore the logical foundations of computer programming by use of techniques which were first applied in the study of geometry and have later been extended to other branches of mathematics by elucidation of sets of axioms and rules of inference.
ACM Transactions on Computer SystemsA logic of authentication
2,512 Citations1990Michael T. Burrows, Martı́n Abadi +1 more
This paper describes the beliefs of trustworthy parties involved in authentication protocols and the evolution of these beliefs as a consequence of communication, and gives the results of the analysis of four published protocols.
Communications of the ACMUsing encryption for authentication in large networks of computers
2,360 Citations1978Roger M. Needham, Michael Schroeder
Use of encryption to achieve authenticated communication in computer networks is discussed and example protocols are presented for the establishment of authenticated connections, for the management of authenticated mail, and for signature verification and document integrity guarantee.
Journal of the ACMKnowledge and common knowledge in a distributed environment
963 Citations1990Joseph Y. Halpern, Yoram Moses
It is shown that states of knowledge of groups of processors are useful concepts for the design and analysis of distributed protocols and that, formally speaking, in practical systems common knowledge cannot be attained.
Communications of the ACMTimestamps in key distribution protocols
682 Citations1981Dorothy E. Denning, Giovanni Maria Sacco
It is shown that key distribution protocols with timestamps prevent replays of compromised keys and have the additional benefit of replacing a two-step handshake.
ACM SIGOPS Operating Systems ReviewEfficient and timely mutual authentication
335 Citations1987Dave Otway, Owen Rees
A protocol for efficient mutual authentication (via a mutually trusted third party) that assures both principal parties of the timeliness of the interaction without the use of clocks or double encipherment is described.
Knowledge and common knowledge in a distributed environment
286 Citations1984Joseph Y. Halpern, Yoram Moses
ACM Computing SurveysSecurity Mechanisms in High-Level Network Protocols
281 Citations1983Victor L. Voydock, Stephen Kent
The implications of adding security mechanisms to high-level network protocols operating in an open-system environment are analyzed, and a brief description of the two basic approaches to communications security, link-oriented measures and end-to-end measures concludes that end- to- end measures are more appropriate in anopen- system environment.
Cryptographic protocols
237 Citations1982Richard A. DeMillo, Nancy Lynch +1 more
A cryptographic transformation is a mapping f from a set of cleartext messages, M, to aSet of ciphertext messages, f, so that f(m) should be difficult to infer from f and public knowledge about f.
IEEE Transactions on Software EngineeringThe Interrogator: Protocol Secuity Analysis
205 Citations1987Jonathan K. Millen, Susan C. Clark +1 more
The Interrogator is a Prolog program that searches for security vulnerabilities in network protocols for automatic cryptographic key distribution, and has been able to rediscover a known vulnerability in a published protocol.
ACM Transactions on Computer SystemsIntegrating security in a large distributed system
199 Citations1989Mahadev Satyanarayanan
Usage experience reveals that resource control, particularly of workstation CPU cycles, is more important than originally anticipated and that the mechanisms available to address this issue are rudimentary.
Privacy Enhancement for Internet Electronic Mail: Part II: Certificate-Based Key Management
189 Citations1993S. Kent
This is one of a series of documents defining privacy enhancement mechanisms for electronic mail transferred using Internet mail protocols.
The complexity of reasoning about knowledge and time
187 Citations1986Joseph Y. Halpern, Moshe Y. Vardi
Method for the hydroformylation of olefins with carbon monoxide and hydrogen in the presence of soluble cobalt compounds as the catalyst at an elevated temperature and under increased pressure, and optionally in the Presence of paraffins and/or other inert diluents.
ACM SIGOPS Operating Systems ReviewAuthentication revisited
184 Citations1987Roger M. Needham, Michael Schroeder
This proposal takes an extra interaction between A and B but requires no extra interactions with the authentication server and no accurate distributed clock-something that can only itself be maintained at the cost of interactions (see for example Lamport and Melliar-Smith).
ACM Transactions on Computer SystemsA key distribution protocol using event markers
70 Citations1983Rocio Bauer, Tom Berson +1 more
The distribution of cryptographic keys in a computer network is discussed, and a protocol which employs a simple means of obtaining current authentication of communicants and does not require communicant to maintain an absolute sense of time is presented.
Authentication: a practical study in belief and action
47 Citations2021Michael T. Burrows, Martı́n Abadi +1 more
This paper motivates, sets out, and exemplifies a logic specifically designed for this analysis of protocols, and shows how protocols differ subtly with respect to the required initial assumptions of the participants and their final beliefs.
A knowledge-based analysis of zero knowledge
42 Citations1988Joseph Y. Halpern, Yjoram Moses +1 more
This paper shows how interactive proof systems motivate a new notion of practical knowledge, and it formally capture and prove the intuition that the prover does not leak any knowledge of any fact (other than the fact being proven) during a zero knowledge proof.
