Scheduled System Maintenance:
Some services will be unavailable Sunday, March 29th through Monday, March 30th. We apologize for the inconvenience.
By Topic

A framework for probabilistic model checking of security protocols using coloured stochastic activity networks and PDETool

Sign In

Cookies must be enabled to login.After enabling cookies , please use refresh or reload or ctrl+f5 on the browser for the login options.

Formats Non-Member Member
$31 $13
Learn how you can qualify for the best price for this item!
Become an IEEE Member or Subscribe to
IEEE Xplore for exclusive pricing!
close button

puzzle piece

IEEE membership options for an individual and IEEE Xplore subscriptions for an organization offer the most affordable access to essential journal articles, conference papers, standards, eBooks, and eLearning courses.

Learn more about:

IEEE membership

IEEE Xplore subscriptions

2 Author(s)
Akbarzadeh, M. ; Sch. of Comput. Eng., Performance & Dependability Eng. Lab., Iran Univ. of Sci. & Technol., Tehran, Iran ; Azgomi, M.A.

One of the main concerns in today electronic technologies is how to ensure the security of these systems. Security protocols have a significant role in maintaining security in computer and communication systems. Therefore, these protocols need to be designed and developed based on rigorous engineering methodologies. Formal methods are among the mostly applied methods for verification of a wide range of systems. In this paper, a framework for probabilistic model checking of security protocols is presented. In the proposed framework, in the first step, a security protocols and some possible attack processes are specified using the security protocol language (SPL). Then, in the second step, the specification is transformed into a coloured stochastic activity network (CSAN) model, which is a high-level extension of stochastic Petri nets. For construction of CSAN model, PDETool can be used. In the third step, using this tool, the state space of the model is generated. In the fourth step, the obtained state space is transformed into the input language of PRISM, which is a tool for probabilistic model checking. In the final step, the security protocol is checked using PRISM and the probability of successful attack to the protocol is evaluated. As a case study, we have modeled and verified the Needham-Schroeder and TMN protocols using the proposed framework.

Published in:

Telecommunications (IST), 2010 5th International Symposium on

Date of Conference:

4-6 Dec. 2010