论文部分内容阅读
阐述了TLS协议的握手过程中服务器端与客户端之间的交互,对其中关键的RC4加密技术即密钥调度算法(KSA)、伪随机书生成算法(PRGA)等进行分析,着重就目前的加密过程中伪随机书生成算法(PRGA)存在的安全性问题进行分析。在猜测赋值分析方法基础上分析了PRGA初始状态已知值数量及分布规律与RC4破解的复杂度的相关性。特定情况下,该方法能有效的破译RC4。
The interaction between server and client in the handshake process of TLS protocol is expounded. The key RC4 encryption algorithms, namely key scheduling algorithm (KSA), pseudorandom book generation algorithm (PRGA) and so on, are analyzed, focusing on the current Encryption process pseudo-random book generation algorithm (PRGA) security problems are analyzed. Based on the guess assignment evaluation method, the correlation between the number and distribution of known values of PRGA initial states and the complexity of RC4 cracking is analyzed. Under certain circumstances, this method can effectively decipher RC4.