Composition and integrity preservation of secure reactive systems (original) (raw)

Specifying and Verifying Crypto-Protocols at the Design Level


Abstract. The clear semantics of Abstract State Machines is tailored to the analysis of crypto-protocols in a realistic environment threatened by an active eavesdropper. The model is intermediate between the abstract approaches based on belief logics, and the lower level approaches based on traces of atomic actions. Properties are stated at the design level with little formal overhead, but reasoning about con dentiality is easily achieved.

