为解决移动射频识别(Mobile REID)系统中信息通过无线信道传输所引发的安全与隐私问题,提出一种基于伪随机函数的轻量级移动REID认证协议,实现后台服务器、阅读器与标签之间的双向认证。该协议中的运算主要集中在后台服务器和阅读器,可以有效地控制标签成本。安全性分析表明,该协议可以有效抵抗位置追踪、假冒、重放和同步化等攻击,并通过GNY逻辑进行了安全性证明。
In order to solve the security and privacy issues in the mobile radio frequency identification (RFID) system caused by wireless transmission, a lightweight mobile RFID authentication protocol based on pseudo-random function is provided, and mutu- al certifications between backend server, reader and tags are achieved. The operation of the protocol is mainly concentrated in the background server and the reader, which can effectively control the cost of the tag. Security analysis shows that the protocol can effectively resist the attack of location tracking, counterfeiting, replay and synchronization attack etc, and the security of this pro- tocol is proved by GNY logic.