An Information Flow Method to Detect Denial of Service Vulnerabilities

dc.creatorLafrance,Stéphane
dc.creatorMullins,John
dc.date2003
dc.date.accessioned2024-02-06T12:52:38Z
dc.date.available2024-02-06T12:52:38Z
dc.descriptionMeadows recently proposed a formal cost-based framework for the analysis of denial of service, showing how to formalize some existing principles used to make cryptographic protocols more resistant to denial of service by comparing the cost to the defender against the cost to the attacker. The firrst contribution of this paper is to introduce a new security property called impassivity designed to capture the abiity of a protocol to achieve these goals in the framework of a generic value-passing process algebra called Security Process Algebra (SPPA) extended with local function calls, cryptographic primitives and special semantic features in order to handle cryptographic protocols. Impassivity is defined as an information flow property founded on bisimulation-based non-deterministic admissible interference. A sound and complete proof method for impassivity is provided. The method extends previous results of the authors on bisimulation-based non-deterministic admissible interference and its application to the analysis of cryptographic protocols. It is illustrated by its application to the TCP/IP protocol. Key Words: Denial of service, Protocols, Ad
dc.formattext/html
dc.identifierhttps://doi.org/10.3217/jucs-009-11-1350
dc.identifierhttps://lib.jucs.org/article/28138/
dc.identifier.urihttps://openrepository.mephi.ru/handle/123456789/8439
dc.languageen
dc.publisherJournal of Universal Computer Science
dc.relationinfo:eu-repo/semantics/altIdentifier/eissn/0948-6968
dc.relationinfo:eu-repo/semantics/altIdentifier/pissn/0948-695X
dc.rightsinfo:eu-repo/semantics/openAccess
dc.rightsJ.UCS License
dc.sourceJUCS - Journal of Universal Computer Science 9(11): 1350-1369
dc.subjectdenial of service
dc.subjectprotocols
dc.subjectadmissible interference
dc.subjectbisimulation
dc.subjectequivalence-checking
dc.titleAn Information Flow Method to Detect Denial of Service Vulnerabilities
dc.typeResearch Article
Файлы
Коллекции