Skip to main content
  • Textbook
  • © 2012

Operational Semantics and Verification of Security Protocols

  • Presents a methodology for formally describing security protocols and their environment
  • All technical chapters include problems, so the book is suited for graduate students of information security or formal methods
  • Authors show the application of the methodology and the effectiveness of the analysis tool
  • Includes supplementary material: sn.pub/extras
  • Includes supplementary material: sn.pub/extras

Part of the book series: Information Security and Cryptography (ISC)

Buy it now

Buying options

eBook USD 54.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book USD 69.95
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book USD 69.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Other ways to access

This is a preview of subscription content, log in via an institution to check for access.

Table of contents (8 chapters)

  1. Front Matter

    Pages I-XIII
  2. Introduction

    • Cas Cremers, Sjouke Mauw
    Pages 1-7
  3. Preliminaries

    • Cas Cremers, Sjouke Mauw
    Pages 9-11
  4. Operational Semantics

    • Cas Cremers, Sjouke Mauw
    Pages 13-35
  5. Security Properties

    • Cas Cremers, Sjouke Mauw
    Pages 37-65
  6. Verification

    • Cas Cremers, Sjouke Mauw
    Pages 67-105
  7. Multi-protocol Attacks

    • Cas Cremers, Sjouke Mauw
    Pages 107-122
  8. Generalising NSL for Multi-party Authentication

    • Cas Cremers, Sjouke Mauw
    Pages 123-141
  9. Historical Background and Further Reading

    • Cas Cremers, Sjouke Mauw
    Pages 143-155
  10. Back Matter

    Pages 157-172

About this book

Security protocols are widely used to ensure secure communications over insecure networks, such as the internet or airwaves. These protocols use strong cryptography to prevent intruders from reading or modifying the messages. However, using cryptography is not enough to ensure their correctness. Combined with their typical small size, which suggests that one could easily assess their correctness, this often results in incorrectly designed protocols.

The authors present a methodology for formally describing security protocols and their environment. This methodology includes a model for describing protocols, their execution model, and the intruder model. The models are extended with a number of well-defined security properties, which capture the notions of correct protocols, and secrecy of data. The methodology can be used to prove that protocols satisfy these properties. Based on the model they have developed a tool set called Scyther that can automatically find attacks on security protocols or prove their correctness. In case studies they show the application of the methodology as well as the effectiveness of the analysis tool.

The methodology’s strong mathematical basis, the strong separation of concerns in the model, and the accompanying tool set make it ideally suited both for researchers and graduate students of information security or formal methods and for advanced professionals designing critical security protocols.

 

Reviews

"This book is a great resource for anyone who wants to do research in the security analysis of protocols. It is written in a textbook style by authors who have excellent command over the subject. It could be used for self-study too ... overall the book does superb justice to the subject in every aspect."
[Sashank Dara, Cisco Systems Inc., IACR Book Reviews, 12/2014]

Authors and Affiliations

  • Department of Computer Science, ETH Zürich, Zürich, Switzerland

    Cas Cremers

  • Faculté des Sciences, de la Technologie, Université du Luxembourg, Luxembourg, Luxembourg

    Sjouke Mauw

About the authors

The first author is a senior scientist working at the ETH Zürich, the second author is a professor at the Université du Luxembourg; both have a research focus and teaching responsibilities in the areas of information security, protocols, privacy, trust and formal methods.

 

Bibliographic Information

Buy it now

Buying options

eBook USD 54.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book USD 69.95
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book USD 69.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Other ways to access