- 1
- 0
- 约7.1千字
- 约 35页
- 2019-02-21 发布于湖北
- 举报
第八讲 模型检验 主要考虑如何发现设计缺陷! 精选编制 一、例子 二、模型检测概述 三、模型检测算法概览 四、模型检测工具 内 容 精选编制 Needham-Schroeder 身份认证协议 [N, S1]Z [S1, S2]N [S2]Z 通信过程可能被窃听!加密可以防止窃听!如何约定加密数字? 每人 有自己的标识:N 每人 公布自己的公钥: 只有N才能解开的消息: [****]N 每个对话过程 用一对数字对内容加密: S1, S2 每次对话前 需要首先建立这对数字 该协议于1978年被提出并得到广泛应用 N Z 一、例子 精选编制 [N, S1]W [S1, S2]N [S2]W [N, S1]Z [S1, S2]N [S2]Z 1996年,发现该协议存在设计缺陷: 攻击者可以伪装一方的身份 利用模型检测方法! 被欺骗! 不可信! 开始伪装 Z W N 精选编制 In 1992 Clarke and his students at CMU used SMV to verify the IEEE Future+ cache coherence protocol. ? They found a number of previously undetected errors in the design of the protocol. ? This was the first time that formal methods have been used to find errors in an IEEE standard. ? Although the development of the protocol began in 1988, all previous attempts to validate it were based entirely on informal techniques. 精选编制 In 1992 Dill and his students at Stanford used Murphito verify the cache coherence protocol of the IEEE Scalable Coherent Interface. ? They found several errors, ranging from uninitialized variables to subtle logical errors. ? The errors also existed in the complete protocol, although it had been extensively discussed, simulated, and even implemented. 精选编制 In 1995 researchers from Bull and Verimag used LOTOS to describe the processors, memory controller, and bus Arbiter of the Power Scale multiprocessor architecture. ? They identified four correctness requirements for proper functioning of the arbiter. ? The properties were formalized using bisimulation relations between finite labeled transition systems. ? Correctness was established automatically in a few minutes using the C?SAR/ ALDéBARAN toolbox. 精选编制 A High-level Data Link Controller was being designed at ATT in Madrid in 1996 ? Researchers at Bell Labs offered to check some properties of the design using the Formal Check verifier. ? Within five hours, six properties were specified and five were verified. ? The sixth property failed, uncovering a bug that would have reduced throu
您可能关注的文档
最近下载
- 【人教精通版英语字帖】六年级下册单词表国标手写体(意大利斜体三年级起点含音标例句).pdf VIP
- 2025年老年能力评估师职业资格模拟试题:认知能力评估与干预策略.docx
- 汽车吊安全操作规程.pptx VIP
- 消费大数据驱动下的纺织生产系统整合路径探索.docx VIP
- FURUNO古野OZS35790C_MODEL1835_1935_1945_1937使用说明书.pdf
- 面向跨话题迁移的层次注意力文本分类系统设计与调优研究.pdf VIP
- 2025年拍卖师增价拍卖(英格兰式拍卖)原理与操作专题试卷及解析.pdf VIP
- 云端隐私保护协议兼容性分析与动态调整机制构建研究.pdf VIP
- 跨文化交际:中英文化对比 (5).ppt VIP
- 智慧教育生态中的数字韧性培养策略研究.pdf VIP
原创力文档

文档评论(0)