Engineering security protocols with modelchecking – Radius-SHA256 and secured simple protocol.
Florian Kammueller, Glenford Mapp, Sandip C. Patel, Sani, Abubaker Sadiq · Middlesex University Research Repository (Middlesex University Of London) · 2012
This paper presents Radius-SHA256, an adaptation of the Radius protocol for remote authentication for network access to the secure hash function SHA- 256 and a Secure Simple Protocol. Both protocols have been formalized in the Avispa model checker, an automated verification tool for security of protocols. The work on Radius utilizes the existing formalization of the standard Radius protocol thereby establishing general validity and transferability of the established security proof and showing how refactoring can be applied in security protocol engineering. The development of a secured version of the SP protocol shows how gradually adding cryptographic keys to a transport protocol can introduce verified security while maintaining a level of trust in the adapted protocol.