Analyse potential attacks and give a method of prevention

Assignment Help Computer Network Security
Reference no: EM13102908

Tasks: Write the following protocols

- Protocol 1:
A and B do not share any secret. Write a key exchange protocol for A and B to share a symmetric key. Analyse potential attacks and give a method of prevention.

- Protocol 2:

A and B share a long term secret key. Write a key exchange protocol for A and B to share a session key. Must consider mutual authentication, freshness, integrity and forward security in the protocol. Analyse its security.

- Protocol 3:

A and B both have their own un-certified public key, respectively. Write a key transport protocol for them to establish a session key. Analyse potential attacks and give a method of prevention.

- Protocol 4:

A and B both have their own certi_ed public key, respectively. Give a protocol for them to establish a session key. Must consider mutual authentication, reshness and integrity in the protocol. Analyse its security.

- Protocol 5:

A and B want to have a private \handshake". Upon a handshake, both know that they are communicating with an authorised party but the identity of its partner is not revealed. Let assume that both A and B come from an organisation and hold a signed public key by the organisation. Let us say: A's public key is yA = ga mod p and B's pubic key is yB = g mod p, where p is a safe prime, g is a generator of Zp,a ∈ ZP is the identity of A and b  ∈ ZP is the identity of B. Further, we assume that SA is the signature on yA signed by the organisation and SB is the signature on yB signed by the organisation. Write a concrete private handshake by using a zero-knowledge proof technique.

- Protocol 6:

Similar to Protocol 5, but now you add (authenticated) key exchange into it so that they can establish a shared session key, upon a handshake. Analyse its security.

- Protocol 7:

There are three mobile service domains; each has an authentication server. We denote by AS1, AS2, and AS3 the corresponding authentication servers. For simplicity, let AS1 AS2, and AS3 represent those three domains. This mobile system can provide mobile communication services to a large number of users.

For simplicity, we assume that two mobile users (A and B) are currently in the system only, where A has registered with AS1 and B has registered with AS2.

They, therefore, call their registering domain home (therefore, share a long term secret key with their home). Both A and B are mobile, in the sense that they can move to any existing domains and they want to communicate securely and anonymously wherever they are located. In this task, you consider the case where A has travelled to AS2 and B has travelled to AS3. Write an authenticated key establishment protocol for A and B to establish a session key.

Security Requirements:

- Authenticity: All parties involved in the communication must be authenticated by related communication partners.
- Confidentiality: All information must be protected against eavesdropping.
- Anonymity: User ID must be protected against outsiders.
- Freshness: All messages must be fresh and secure against reply attacks.
- Integrity: Integrity protection should be applied to all communication flows.

Reference no: EM13102908

Questions Cloud

How language reflects culture and its worldview : Write down three- to four-page (600-800 word) paper on topic of your choice associated to language and culture. Using Web or ProQuest Online Library, find article about differences in way language.
Point estimate for mean and margin of error : Find the 95% confidence interval for the true population mean. Identify the point estimate for mean and margin of error.
What is the purpose of this wire : At some automobile toll-collecting stations, a thin metal wire sticks up from the road and makes contact with cars before they reach the toll collector. What is the purpose of this wire?
Determine the angle that the force : A charge of q = +7.50 µC is located in an electric field. The x and y components of the electric field are Ex = 4.80 103 N/C and Ey = 7.40 103 N/C, respectively. (a) What is the magnitude of the force on the charge? (b) Determine the angle that th..
Analyse potential attacks and give a method of prevention : Write a key exchange protocol for A and B to share a symmetric key. Analyse potential attacks and give a method of prevention and write a key exchange protocol for A and B to share a session key. Must consider mutual authentication, freshness, inte..
Design for specific medical facility or hospital department : Term paper is "Strategic Planning Document" for HIM system model which you will research and design for specific medical facility or hospital department of choice, like a clinic.
Find the acceleration of the proton : (a) Find the electric force on the proton. magnitude N direction (b) Find the acceleration of the proton. magnitude m/s2 direction (c) Find the distance it travels in 2.18 µs. i only need help with c please. I have rechecked my calculations and am..
Compare the electric field strength : The electric charge of a proton is distributed over a volume. The distribution of the proton can be approximated by the exponential equation rho = e/(8*pi*b)exp(-r/b). r is the radial position inside the proton and b equals .23 * 10^-15 m. Find th..
What is the mirrors radius of curvature : Some rear view mirrors produce images of cars behind you that are smaller than they would be if the mirror were flat. What is the mirrors radius of curvature if cars 25.0 m away appear 0.33 times their normal size?

Reviews

Write a Review

Computer Network Security Questions & Answers

  Calculate the crc or fcs for the sender

The pattern or generator is P 1001. Calculate the CRC or FCS for the sender. You must give the details of this calculation.

  Concept of subletting in v6

small package routing is more efficient in IPV6 than in IPV4, increase the hacking factor, network security model (NSM), ACL, VLAN, war dialing

  Intrusion detection system (ids)

concept of Data, information and knowledge in information warfare, politically motivated computer misdeeds, McClintock Manufacturing, Percentage of Windows systems that run antivirus software that is updated each day, network traffic that is evaluate..

  Benefits of an information system

Suppose monetary advantages of an information system of $50,000 the 1st year and increasing benefits of $5000a year of the next four years year 1=$50,000;

  Cyber terrorism & information warfare

Risk Management, IT Related Risks, Radio Frequency Identification (RFID), Easy listing of special programs,  Social Engineering

  Question on security infrastructure and protocols

Question on Security infrastructure and protocols

  Groups of people involved with computer security

What are the many groups of people who are involved with computer security? Name the groups and elaborate on their functions.

  Security measures currently in place give adequate security

Explain in scholarly detail on whether you believe security measures currently in place give adequate security as well as privacy, or do you believe these issues being emphasized are at the expense of the other?

  Question about communication

Communication is valuable; a main part of this is the ability to provide management the information they required, when they require it.

  Retention policy and litigation hold notices

The purpose of this project is to provide you with an opportunity to create a document retention policy. You will also learn how to serve a litigation hold notice for an educational institute.

  Describe the life cycle of an information system

Suppose that you run a photography printing store. Your workers have been using punch cards for time entry since you started the business.

  Access control list

DNS Cache Poisoning attack, Turtle Shell Architecture,

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd