考虑到RFID系统中日益突出的隐私问题,分析比较了国内外众多文献,讨论了RFID系统可能存在的攻击并定义了其隐私保护需求,回顾了已有的各种RFID隐私保护技术,尤其是基于密码技术的RFID隐私保护协议,其按认证标签的时间复杂度又可分为3类:线性时间、对数级时间和常数级时间复杂度.随后从符号操作方法和计算复杂性方法 2个大类出发,重点比较了多个RFID隐私保护模型,其中计算复杂性方法又可细分为基于不可区分性和基于不可预测性2类.研究表明:在设计协议时还需要在隐私性和成本之间做好平衡,同时急需一个统一的被广泛接受的隐私保护模型作为评价RFID隐私保护性的通用标准.
To achieve privacy protection in RFID system,the existing attacks were discussed to define privacy protection demand based on comprehensive survey.The existing variety of RFID privacy mechanisms were reviewed,especially for the protocols based on cryptographic technique.According to time complexity in tag identification,the protocols were categorized into 3 classes of constant-time,logarithmic-time and linear-time protocols.The RFID privacy models between symbolic operation and computational complexity were compared emphatically.The computational complexity has two kinds of provable security basis of indistinguishability unpredictability.The results show that the balance between privacy and cost should be considered during designing protocal.A unified and widely accepted privacy model is urgent for evaluating privacy protection of RFID system.