Formal Verification of the mERA-Based eServices with Trusted Third Party Protocol

Abstract : Internet services such as online banking, social networking and other web services require identification and authentication means. The European Citizen card can be used to provide a privacy-preserving authentication for Internet services enabling e.g. an anonymous age verification or other forms of anonymous attribute verification. The Modular Enhanced Symmetric Role Authentication (mERA) - based eServices with trusted third party protocol is a privacy-preserving protocol based on eID card recently standardized at CEN TC224 WG16. In this paper, we provide a formal analysis of its security by verifying formally several properties, such as secrecy, message authentication, unlinkability, as well as its liveness property. In the course of this verification, we obtain positive results about this protocol. We implement this verification with the ProVerif tool.
Type de document :
Communication dans un congrès
Dimitris Gritzalis; Steven Furnell; Marianthi Theoharidou. 27th Information Security and Privacy Conference (SEC), Jun 2012, Heraklion, Crete, Greece. Springer, IFIP Advances in Information and Communication Technology, AICT-376, pp.299-314, 2012, Information Security and Privacy Research. 〈10.1007/978-3-642-30436-1_25〉
Liste complète des métadonnées

Littérature citée [12 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/hal-01518237
Contributeur : Hal Ifip <>
Soumis le : jeudi 4 mai 2017 - 13:45:31
Dernière modification le : vendredi 5 mai 2017 - 01:03:03
Document(s) archivé(s) le : samedi 5 août 2017 - 13:22:57

Fichier

978-3-642-30436-1_25_Chapter.p...
Fichiers produits par l'(les) auteur(s)

Licence


Distributed under a Creative Commons Paternité 4.0 International License

Identifiants

Citation

Maria Christofi, Aline Gouget. Formal Verification of the mERA-Based eServices with Trusted Third Party Protocol. Dimitris Gritzalis; Steven Furnell; Marianthi Theoharidou. 27th Information Security and Privacy Conference (SEC), Jun 2012, Heraklion, Crete, Greece. Springer, IFIP Advances in Information and Communication Technology, AICT-376, pp.299-314, 2012, Information Security and Privacy Research. 〈10.1007/978-3-642-30436-1_25〉. 〈hal-01518237〉

Partager

Métriques

Consultations de la notice

108

Téléchargements de fichiers

11