50 likes | 127 Views
The Andrew Protocol Corrected. 1 A B : {N A } K AB 2 B A : {N A , N B } K AB 3 A B : {N B } K AB 4 B A : {K AB , N B , N A } K AB. The Andrew Protocol Corrected. 1 A B : {N A } K AB 2 B A : {N A , N B } K AB 3 A B : {N B } K AB
E N D
The Andrew Protocol Corrected 1 A B : {NA}KAB 2 B A : {NA,NB}KAB 3 A B : {NB}KAB 4 B A : {KAB,NB,NA}KAB
The Andrew Protocol Corrected 1 A B : {NA}KAB 2 B A : {NA,NB}KAB 3 A B : {NB}KAB 4 B A : {KAB,NB,NA}KAB NAin the 4th message is kown by A to be fresh
Checking the Andrew Protocol Corrected AG(rec {K'AB,N'B}KAB BA fresh NA BABB shk K'AB) e BA BB shk K'AB BB shk K'AB fresh {K'AB,N'B,NA}KABshk K'AB
Checking the Andrew Protocol Corrected AG(rec {K'AB,N'B}KAB BA fresh NA BABB shk K'AB) e BA BB shk K'AB BB rec {K'AB,N'B,NA}KABBB sendA{K'AB,N'B,NA}KAB fresh{K'AB,N'B,NA}KAB BB fresh{K'AB,N'B,NA}KAB (fresh K'AB fresh N'Bfresh NA) rec {K'AB,N'B,NA}KABfresh{K'AB,N'B,NA}KAB shk K'AB
Checking the Andrew Protocol Corrected AG(rec {K'AB,N'B}KAB BA fresh NA BABB shk K'AB) e recA {K'AB,N'B,NA}KAB BArec{K'AB,N'B,NA}KAB BA BB shk K'AB BB shk K'AB The property holds of the corrected Andrew Protocol