Verifying an im plem entation of SSH

نویسنده

  • Erik Poll
چکیده

We present a case study in the formal verification of an open source Java implementation of SSH. We discuss the security flaws we found and fixed by means of formal specification and verification – using the specification language JML and the program verification tool ESC/Java2 – and by more basic manual code inspection. Of more general interest is the methodology we propose to formalise security protocols such as SSH using finite state machines. This provides a precise but accessible formal specification, that is not only useful for formal verification, but also for development, testing, and for clarification of official specification in natural language.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Emphasis on Adolescents and Young Adults an Approach for the Design and Im Plem Entation of Non -academic Interventions W Ith Learning Disable D Adolescents

This paper presents an alternat i ve approach to research in learning disabilities among adolescents and young adults. The author proposes that low achieving adolescents l abeled 11 learning disabled .. can and should play a role in research efforts in which they are involved. While much research focuses on educational interventions following basic research formats, research described in this p...

متن کامل

Candidates pledge to offer more activities

T he N oha ElGanzouri/M elissa Peters ticket an d th e D eb o rah Sheedy/Angela McNulty ticket sh are many of the sam e goals for the upcoming year but hold d iffe ren t ideas reg a rd in g the im plem entation of these goals, a c c o rd in g to S tu d e n t Body President candidate Sheedy. These goals include increas­ ing s tu d e n t in v o lv e m e n t a t campus wide events, expanding servi...

متن کامل

Scientific Achievements of the Highway Research Program

In evaluating the highw ay research program of the past as well as of today, one m ight try to find those really significant changes or im ­ provem ents in highw ay activity which can be traced to research. In p reparing this presen tation tha t was m y first plan of attack. B ut such an approach did not prove fruitful. M any im portan t changes in the highw ay field have occurred and they— as ...

متن کامل

Heparin - Induced Thrombocytopenia

Sera from 14 patients who developed heparin-induced throm bocyto­ penia were tested by an indirect platelet im m unofluorescent test in an a ttem pt to characterize the serologic reactions betw een platelets, heparin, and the antibody. Positive results were observed in seven cases with vari­ able patterns of reactions in the tests when perform ed in the presence or the absence of the offending ...

متن کامل

Explaining Institutional Change: on the Interplay between Internal and External Institutions

There is grow ing ev id ence tha t in s titu tions m a tter for econom ic grow th . If good ins titu tions can s pur grow th , then try ing to change form al or externa l in s titu tions accord ingly a lm os t s eem s to s ugges t its elf. Yet, externa l in s titu tions w ill on ly provok e the d es ired effect if they are effectively en forced . It is a rgued tha t the effectivenes s of extern...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2007