Model-Based Verification of a Security Protocol for Conditional Access to Services

  • Authors:
  • G. Leduc;O. Bonaventure;L. Léonard;E. Koerner;C. Pecheur

  • Affiliations:
  • Université de Liège, Institut d‘Electricité Montefiore, B 28, B-4000 Liège 1, Belgium. leduc@montefiore.ulg.ac.be;Université de Liège, Institut d‘Electricité Montefiore, B 28, B-4000 Liège 1, Belgium;Université de Liège, Institut d‘Electricité Montefiore, B 28, B-4000 Liège 1, Belgium;Université de Liège, Institut d‘Electricité Montefiore, B 28, B-4000 Liège 1, Belgium;Université de Liège, Institut d‘Electricité Montefiore, B 28, B-4000 Liège 1, Belgium

  • Venue:
  • Formal Methods in System Design
  • Year:
  • 1999

Quantified Score

Hi-index 0.00

Visualization

Abstract

We use the formal language LOTOS to specify and verify therobustness of the Equicrypt protocol under design in the EuropeanOKAPI project for conditional access to multimedia services. We statesome desired security properties and formalize them. We describe ageneric intruder process and its modelling, and show that someproperties are falsified in the presence of this intruder. Thediagnostic sequences can be used almost directly to exhibit thescenarios of possible attacks on the protocol. Finally, we propose animprovement of the protocol which satisfies our properties.