The Wireless LAN Authentication and Privacy Infrastructure protocol(WAPI) is a mandatory standard for wireless LAN security in China. It has been widely used to protect the security of information transmission between mobile devices and access points in wireless LANs. However, the security of the WAPI protocol has not been fully proven, and there has been a lack of comprehensive and systematic analysis of its security. In this work, we conduct an extensive formal analysis of the WAPI authentication and key agreement protocol using the formal analysis tool Proverif. Our model is the first detailed enough to describe the security goals and the interaction process of WAPI, including certificate-based authentication, unicast key agreement, and multicast key agreement. The analysis reveals that the WAPI protocol cannot meet 9 out of 21 security goals, resulting in defects such as MITM attacks, DoS attacks, unicast key update failures, and multicast key reuse attacks. To address these issues, we propose specific improvement suggestions for the WAPI authentication and key agreement protocol.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Formal Analysis of WAPI Authentication and Key Agreement Protocol

  • Zhongqi Lv,
  • Hui Li,
  • Haisong Ye,
  • Chi Ma,
  • Jingjing Guan

摘要

The Wireless LAN Authentication and Privacy Infrastructure protocol(WAPI) is a mandatory standard for wireless LAN security in China. It has been widely used to protect the security of information transmission between mobile devices and access points in wireless LANs. However, the security of the WAPI protocol has not been fully proven, and there has been a lack of comprehensive and systematic analysis of its security. In this work, we conduct an extensive formal analysis of the WAPI authentication and key agreement protocol using the formal analysis tool Proverif. Our model is the first detailed enough to describe the security goals and the interaction process of WAPI, including certificate-based authentication, unicast key agreement, and multicast key agreement. The analysis reveals that the WAPI protocol cannot meet 9 out of 21 security goals, resulting in defects such as MITM attacks, DoS attacks, unicast key update failures, and multicast key reuse attacks. To address these issues, we propose specific improvement suggestions for the WAPI authentication and key agreement protocol.