Browse > Article
http://dx.doi.org/10.13089/JKIISC.2010.20.4.117

Design Implementation of Lightweight and High Speed Security Protocol Suitable for UHF Passive RFID Systems  

Kang, You-Sung (ETRI)
Choi, Yong-Je (ETRI)
Choi, Doo-Ho (ETRI)
Lee, Sang-Yeoun (ETRI)
Lee, Heyung-Sup (ETRI)
Abstract
A passive RFID tag which received attention as a future technology for automatic and quick identification faces some difficulties about security problems such as tag authentication, reader authentication, data protection, and untraceability in addition to cost and reliable identification. A representative passive RFID technology is the ISO/IEC 18000-6 Type C which is an international standard for 900 MHz UHF-band. This standard has some difficulties in applying to the security services such as originality verification, tag's internal information protection, and untraceability, because it does not provide high-level security solution. In this paper, we summarize security requirements of ISO/IEC ITC 1/SC 31 international standardization group, propose security protocols suitable for the UHF-band passive RFID system using a crypto engine, and analyze its security strength. In addition, we verify that it is possible to implement a tag conforming with the proposed security protocols by presenting concrete command/response pairs and cryptographic method.
Keywords
RFID security; RFID security protocol; ISO/IEC 29167-6; RFID authentication;
Citations & Related Records
Times Cited By KSCI : 4  (Citation Analysis)
연도 인용수 순위
1 하재철, 백이루, 김환구, 박제훈, 문상제, "해쉬함수에 기반한 경량화된 RFID 인증 프로토콜," 한국정보보호학회논문지, 19(3), pp. 61-72, 2009년 6월.   과학기술학회마을
2 ISO/IEC, "ISO/IEC 15962 Information technology - Radio-Frequency Identification for item management - Data protocol: data encoding rules and logical memory functions," Oct. 2004.
3 천지영, 황정연, 이동훈, "이동형 리더 소지자의 프라이버시를 보호하는 RFID 태그 검색 프로토콜," 한국정보보호학회논문지, 19(5), pp. 59-69, 2009년 10월.   과학기술학회마을
4 정보통신단체표준(잠정표준) TTAI.KO-12.0091, "수동형 RFID 보안태그와 리더의 인증 및 데이터 보호 프로토콜," 2008년 12월.
5 양연형, 김선영, 이필중, "개선된 수동형 RFID 보안태그와 리더의 인증 및 데이터 보호 프로토콜," 정보보호학회논문지, 20(1), pp. 85-93, 2010년 2월.   과학기술학회마을
6 정보통신단체표준 TTAK.KO-12.0091/R1, "수동형 RFID 보안태크와 리더의 인증 및 데이터 보호 프로토콜," 2009년 12월.
7 ISO/lEC, "ISO/IEC WD 29167 Information technology - Radio-Frequency Identification for item management - Part 1: Air interface for security services and file management for RFID - architecture," Jun. 2010.
8 ISO/IEC, "ISO/IEC WD 29167 Information technology - Radio-Frequency Identification for item management - Part 6: Air interface for security services and file management for RFID at 860 - 960 MHz," Jun. 2010.
9 최용제, 최두호, 이상연, 정교일, "수동형 RFID를 위한 보안 기술 구현," 한국통신학회 하계종합학술발표회, pp. 96-99, 2008년 7월.
10 김진호, 서재우, 이필중, "저비용 RFID 시스템에 적합한 효율적인 인증 방법," 한국정보보호학회논문지, 18(2), pp. 117-128, 2008년 4월.   과학기술학회마을
11 A. Juels, P. Syvorson, and D. Bailey, "High-power proxies for enhancing RFID privacy and utility," Proc. of the Privacy Enhancing Technologies, LNCS 3856, pp. 210-226, 2006.
12 G. Karjoth and P. Moskowitz, "Disabling RFID tags with visible confirmation: Clipped tags are silenced," Proceedings of Workshop on Privacy in the Electronic Society, pp, 27-30, 2005.
13 EPCglobal, "EPCTM Radio-frequency identity protocols class-1 generation-2 UHF RFID protocol for communications at 860 MHz - 960 MHz version 1.0.9", Jan. 2005.
14 A. Juels, R. L. Rivest, and M. Szydlo, "The blocker tag: Selective blocking of RFID tags for consumer privacy," Proceedings of 8th ACM Conference on Computer and Communication Security, pp. 103-111, 2003.
15 A. Juels and R. Pappu, "Squealing euros: privacy protection in RFID-enabled banknotes," Proc. of the Financial Cryptography, LNCS 2742, pp. 103-121, 2003.
16 M. Rieback, B. Crispo, and A. Tanenbaum, "RFID Guardian: A battery-powered mobile device for RFID privacy management," Proc. of the Australasian Conference on Information Security and Privacy, LNCS 3574, pp. 184-194, 2005.
17 ISO/lEC, "ISO/lEC 15963 Information technology - Radio-Frequency Identification for item management - Unique identification for RF tags," Sep. 2004.
18 A. Juels, "RFID security and privacy: A research survey," lEEE Journal on Selected Areas in Communications, vol. 24, no. 2, pp. 381-394, Feb. 2006.   DOI
19 ISO/IEC, "ISO/IEC 15961 Information technology - Radio-Frequency Identification for item management - Data protocol: application interface," Oct. 2004.
20 N. Good, J. Han, E. Milos, D. Molnar, D. Mulligan, L. Quilter, J. Urban, and D. Wagner, "Radio frequency identification and privacy with information goods," Proceedings of Workshop on Privacy in the Electronic Society, pp. 41-42, Apr. 2004.
21 ISO/IEC, "ISO/IEC 18000 Information technology - Radio-Frequency Identification for item management - Part 6: Parameters for air interface communications at 860 MHz to 960 MHz Amendment 1," Jun. 2006.