计算机与现代化 ›› 2021, Vol. 0 ›› Issue (03): 46-50.

• 信息安全 • 上一篇    下一篇

基于随机Hash链的双向安全认证RFID协议

  

  1. (1.南瑞集团有限公司(国网电力科学研究院有限公司),江苏南京210061; 
     2.国电南瑞科技股份有限公司北京能源科技分公司,北京100085;3.中国科学院信息工程研究所,北京100093; 
     4.中国科学院大学网络空间安全学院,北京100049;5.山西财经大学网络与信息教育技术中心,山西太原030006)
  • 出版日期:2020-03-30 发布日期:2021-03-24
  • 作者简介:周静(1977—),女,湖北荆门人,高级工程师,博士,研究方向:园区综合能源管控,RFID协议安全,E-mail: zhoujing12@sgepri.sgcc.com.cn; 董国超(1995—),男,山东烟台人,硕士研究生,研究方向:物联网应用与安全,嵌入式安全,E-mail: dongguochao19@mails.ucas.edu.cn。
  • 基金资助:
    南瑞集团有限公司科技项目(524608200058)

Two-way Security Authentication RFID Protocol Based on Random Hash Chain

  1. (1. NARI Group Co. Ltd. (State Grid Electric Power Research Institute Co. Ltd.), Nanjing 210061, China; 
    2. Beijing Energy Technology Branch, NARI Technology Co. Ltd., Beijing 100085, China; 
    3. Institute of Information Engineering, Chinese Academy of Sciences, Beijing 100093, China;  
    4. School of Cyber Security, University of Chinese Academy of Sciences, Beijing 100049, China;  
    5. Center for Network and Information Education Technology, Shanxi University of Finance and Economics, Taiyuan 030006, China)
  • Online:2020-03-30 Published:2021-03-24

摘要: 射频识别(RFID)技术在物联网领域得到广泛的运用,但是RFID系统在信息传输过程中容易被窃取和伪造,RFID系统已经暴露出严重的安全问题。针对目前主流的Hash链协议簇存在的假冒攻击问题,提出一种基于随机Hash链的双向安全认证协议。在双向认证过程中,阅读器通过识别随机数K的数值来验证响应报文的有效性,标签通过检测回传报文的标签属性检测阅读器的合法性,阅读器通过检测标签预置身份来防止标签被假冒,保障数据在系统中的真实性,可有效提高系统的前向安全、防伪造与防位置跟踪等安全特性。最后本文使用BAN逻辑对提出的双向安全认证协议进行安全验证,实验结果表明标签与阅读器之间具有可相互认证的安全性。

关键词: 物联网, RFID, Hash链, 双向安全认证

Abstract: Radio Frequency IDentification (RFID) technology is widely used in the field of Internet of Things. But the RFID system is easy to be stolen and forged during the information transmission process, RFID system has exposed serious security problems. Aiming at the problem of counterfeit attacks in the current mainstream Hash chain protocol cluster, a two-way security authentication protocol based on random Hash chain is proposed. In the process of mutual authentication, the reader verifies the validity of the response message by identifying the value of the random number K, the tag detects the legitimacy of the reader by detecting the tag attributes of the returned message, the reader prevents the label from being counterfeited by detecting the preset identity of the label and ensure the authenticity of data in the system. It can effectively improve the systems forward security, anti-counterfeiting and anti-location tracking and other security features. Finally, this paper uses BAN logic to perform security verification on the proposed protocol, the experimental results show that there is the security of mutual authentication between the tag and the reader.

Key words: IoT, RFID, Hash chain, two-way security certification