Passer à la navigation principale Passer à la recherche Passer au contenu principal

Implementing TLS with verified cryptographic security

  • Karthikeyan Bhargavan
  • , Cédric Fournet
  • , Markulf Kohlweiss
  • , Alfredo Pironti
  • , Pierre Yves Strub
  • INRIA Rocquencourt
  • Microsoft Research
  • MDEA Software

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

151 Citations (Scopus)

Résumé

TLS is possibly the most used protocol for secure communications, with a 18-year history of flaws and fixes, ranging from its protocol logic to its cryptographic design, and from the Internet standard to its diverse implementations. We develop a verified reference implementation of TLS 1.2. Our code fully supports its wire formats, ciphersuites, sessions and connections, re-handshakes and resumptions, alerts and errors, and data fragmentation, as prescribed in the RFCs; it interoperates with mainstream web browsers and servers. At the same time, our code is carefully structured to enable its modular, automated verification, from its main API down to computational assumptions on its cryptographic algorithms. Our implementation is written in F# and specified in F7. We present security specifications for its main components, such as authenticated stream encryption for the record layer and key establishment for the handshake. We describe their verification using the F7 typechecker. To this end, we equip each cryptographic primitive and construction of TLS with a new typed interface that captures its security properties, and we gradually replace concrete implementations with ideal functionalities. We finally typecheck the protocol state machine, and obtain precise security theorems for TLS, as it is implemented and deployed. We also revisit classic attacks and report a few new ones.

langue originaleAnglais
titreProceedings - 2013 IEEE Symposium on Security and Privacy, SP 2013
Pages445-459
Nombre de pages15
Les DOIs
étatPublié - 13 août 2013
Modification externeOui
Evénement34th IEEE Symposium on Security and Privacy, SP 2013 - San Francisco, CA, États-Unis
Durée: 19 mai 201322 mai 2013

Série de publications

NomProceedings - IEEE Symposium on Security and Privacy
ISSN (imprimé)1081-6011

Une conférence

Une conférence34th IEEE Symposium on Security and Privacy, SP 2013
Pays/TerritoireÉtats-Unis
La villeSan Francisco, CA
période19/05/1322/05/13

Empreinte digitale

Examiner les sujets de recherche de « Implementing TLS with verified cryptographic security ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation