Conference paper Open Access

A Symbolic Analysis of ECC-Based Direct Anonymous Attestation

Whitefield, Jorden; Chen, Liqun; Sasse,Ralf; Schneider, Steve; Treharne, Helen; Wesemeyer, Stephan

Direct Anonymous Attestation (DAA) is a cryptographic scheme that provides Trusted Platform Module (TPM)- backed anonymous credentials. We develop TAMARIN modelling of the ECC-based version of the protocol as it is standardised and provide the first mechanised analysis of this standard. Our analysis confirms that the scheme is secure when all TPMs are assumed honest, but reveals a break in the protocol’s expected authentication and secrecy properties for all TPMs even if only one is compromised. We propose and formally verify a minimal fix to the standard. In addition to developing the first formal analysis of ECC-DAA, the paper contributes to the growing body of work demonstrating the use of formal tools in supporting standardisation processes for cryptographic protocols.

Files (487.3 kB)
Name Size
20-A-Symbolic-Analysis-ECC-based-Direct-Anonymous-Attestation.pdf
md5:f64241871b8259b802362a22ed691909
487.3 kB Download
3
8
views
downloads
Views 3
Downloads 8
Data volume 3.9 MB
Unique views 3
Unique downloads 6

Share

Cite as