Skip to main content
QUICK REVIEW

[論文レビュー] Actor-network procedures: Modeling multi-factor authentication, device pairing, social interactions

Duško Pavlović, Catherine Meadows|arXiv (Cornell University)|Jun 3, 2011
User Authentication and Security Systems参考文献 65被引用数 10
ひとこと要約

本稿は、人間、デバイス、通信チャネルを統合する異種ネットワークのための形式的モデルとしてアクター・ネットワーク手順を導入し、そのようなシステムにおけるセキュリティを推論するための手順導出論理(PDL)を提案する。本フレームワークは、二要因認証およびマルチチャネルデバイスペアリングの分析を通じて検証され、局所的制約を統合的論理的・図式的推論によってグローバルなセキュリティ特性を保証する方法を示している。

ABSTRACT

As computation spreads from computers to networks of computers, and migrates into cyberspace, it ceases to be globally programmable, but it remains programmable indirectly: network computations cannot be controlled, but they can be steered by local constraints on network nodes. The tasks of "programming" global behaviors through local constraints belong to the area of security. The "program particles" that assure that a system of local interactions leads towards some desired global goals are called security protocols. As computation spreads beyond cyberspace, into physical and social spaces, new security tasks and problems arise. As networks are extended by physical sensors and controllers, including the humans, and interlaced with social networks, the engineering concepts and techniques of computer security blend with the social processes of security. These new connectors for computational and social software require a new "discipline of programming" of global behaviors through local constraints. Since the new discipline seems to be emerging from a combination of established models of security protocols with older methods of procedural programming, we use the name procedures for these new connectors, that generalize protocols. In the present paper we propose actor-networks as a formal model of computation in heterogenous networks of computers, humans and their devices; and we introduce Procedure Derivation Logic (PDL) as a framework for reasoning about security in actor-networks. On the way, we survey the guiding ideas of Protocol Derivation Logic (also PDL) that evolved through our work in security in last 10 years. Both formalisms are geared towards graphic reasoning and tool support. We illustrate their workings by analysing a popular form of two-factor authentication, and a multi-channel device pairing procedure, devised for this occasion.

研究の動機と目的

  • 現代の異種ネットワークに統合されたコンピュータ、デバイス、人間アクターを安全に保証するための高水準設計手法の欠如に対処すること。
  • 従来のセキュリティプロトコルと、社会的および計算的プロセスが複雑に絡み合うサイバー・ソーシャルシステムという新たな現実との間のギャップを埋めること。
  • 複雑で分散型の手順におけるセキュリティ特性について、図式的および論理的推論を両方支援する形式的フレームワークを開発すること。
  • 二要因認証やデバイスペアリングといった実世界のプロトコルを、人間・デバイス・チャネルの相互作用を統合した一貫したモデル内で厳密に分析できること。

提案手法

  • 人間、デバイス、通信チャネルを一等級のネットワークノードとして扱う、異種システムにおける計算の形式的モデルとしてアクター・ネットワークを提案する。
  • 図式的推論と形式的演繹を統合した論理的枠組みとして、手順導出論理(PDL)を導入する。
  • プロトコルの流れを表現するためのグラフィカルなテンプレートと論理的アノテーションの組み合わせを用い、局所的制約からセキュリティ特性を導出する。
  • 二つの具体的なプロトコル(二要因認証方式およびマルチチャネルデバイスペアリング手順)に対してPDLを適用する。
  • メッセージの流れをモデル化し、矛盾や脆弱性を検出するために、部分的に順序付けられた多重集合としてのイベントに時間的および因果的推論を適用する。
  • プロトコル導出論理(PDL)で確立された概念を活用し、人間的および社会的要因をセキュリティ推論に統合するように拡張する。

実験結果

リサーチクエスチョン

  • RQ1人間、デバイス、通信チャネルを統合するシステムにおいて、セキュリティプロトコルをどのように形式的にモデル化できるか。
  • RQ2ハイブリッドネットワーク手順における構造と各要素の貢献を推論できる論理的枠組みとは何か。
  • RQ3図式的推論と論理的推論を効果的に統合することで、プロトコル設計の初期段階での推論と検証を支援できるか。
  • RQ4多者間・マルチチャネル相互作用における、誠実性や正しく流れることなどのセキュリティ特性を、どのように形式的に導出できるか。
  • RQ5完全に予測可能でない個人の行動を想定する場合、形式的論理が社会的相互作用をどの程度モデル化できるか。

主な発見

  • 提案されたアクター・ネットワークモデルは、現代のセキュリティ手順における計算的要素と社会的要素の相互作用を的確に捉えている。
  • 手順導出論理(PDL)は、二要因認証およびデバイスペアリングにおけるメッセージの真正性や参加者の誠実性といったセキュリティ特性の形式的検証を可能にしている。
  • 図式化されたアノテーション付き図を用いたフレームワークにより、白板レベルの設計議論に形式的分析を統合できる初期段階の推論を支援している。
  • 二要因認証およびマルチチャネルペアリングの分析から、デバイスおよびチャネルの局所的制約が望ましいグローバルなセキュリティ結果を保証できることを示している。
  • 部分的に順序付けられたイベントの多重集合は、因果的経路が曖昧または区別不能であっても、メッセージの流れに関する推論の堅牢な基盤を提供している。
  • 本稿は、個人の行動は予測不能であるが、計算システムと統合された社会的ネットワークにおける集団的行動は、効果的にモデル化可能であると結論づけている。

より良い研究を、今すぐ始めましょう

論文の読解から最終レビューまで、研究時間を劇的に削減しましょう。

クレジットカード登録不要

このレビューはAIが作成し、人間の編集者が確認しました。