Title
A Machine-Checked Proof of Security for AWS Key Management Service
Abstract
We present a machine-checked proof of security for the domain management protocol of Amazon Web Services' KMS (Key Management Service) a critical security service used throughout AWS and by AWS customers. Domain management is at the core of AWS KMS; it governs the top-level keys that anchor the security of encryption services at AWS. We show that the protocol securely implements an ideal distributed encryption mechanism under standard cryptographic assumptions. The proof is machine-checked in the EasyCrypt proof assistant and is the largest EasyCrypt development to date.
Year
DOI
Venue
2019
10.1145/3319535.3354228
Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security
Keywords
Field
DocType
key management, machine-checked proof, provable-security
Key management,Computer science,Computer security
Conference
Volume
ISBN
Citations 
2019
978-1-4503-6747-9
3
PageRank 
References 
Authors
0.40
0
10
Name
Order
Citations
PageRank
José Bacelar Almeida11028.34
Manuel Barbosa233724.91
Gilles Barthe32337152.36
Matthew Campagna430.74
Ernie Cohen530.40
Benjamin Grégoire681748.93
Vitor Pereira771.13
Bernardo Portela8383.90
Pierre-Yves Strub954029.87
Serdar Tasiran1030.40