为了能够解决RFID在用户安全、隐私等问题方面的安全隐患,提出了一种基于椭圆曲线密码的RFID安全协议。在椭圆曲线离散对数问题难解的基础上,与其它公钥密码体制相比,该协议的安全性能更高、密码长度更短且计算量更低。该协议运用基于椭圆曲线的DH密钥交换协议ECDH(ellipticcurveDiffie-Hellman)与基于嵌入明文的加密方案,实现了保护RFID标签与读写器之间的数据交换;同时,通过对该协议的安全性分析以及与其它采用对称密钥体系的RFID协议的比较表明,该协议能够满足RFID系统的安全性要求。
To solve the problems of consumers’security and privacy,a new security protocol of RFID based on elliptic curve cryptography(ECC) is proposed,and the security of ECC is based on the difficulty of elliptic curve discrete logarithm problem(ECDLP).Comparing with other asymmetric cryptography,ECC has stronger security,shorter key length,less computation and so on.This protocol uses the elliptic curve Diffie-Hellman(ECDH) and the algorithm of plaintext embedding in elliptic curve,so the data exchanged between RFID tag and reader can be protected by this protocol.By analyzing its security and efficiency,comparison with these protocols based on symmetric cryptography,our protocol can meet the security requirements of RFID systems very well.