电子标签将取代条码的地位,但由于低成本的电子标签只具有很弱的计算能力,甚至不能完成基本的对称密钥加密操作,为其提供安全性存在一定困难。讨论了在射频识别(RFID)技术中存在的安全性风险,指出了应用身份鉴别协议的必要性,分析了目前广泛应用的两种鉴别体制的缺陷,提出了一种适合于RFID技术的基于零知识证明的鉴别协议,并对其进行了验证和性能分析。
The RFID tag offers a viable and powerful replacement for barcodes. The challenge in providing security for low cost RFID tags is that they are computationally weak devices, unable to perform even basic symmetric-key cryptographic operations. In this paper, the risk of security in RFID technology is discussed, so the authentication protocol is very necessary. However, there are some disadvantages in the two types of authentication protocols which are widely used at present. An authentication protocol based on zero knowledge proof which is suitable for RFID technology is put forward,and its validity and performance is analyzed.