Cross-Domain Password-Based Authenticated Key Exchange Revisited

被引:0
|
作者
Chen, Liqun [1 ]
Lim, Hoon Wei [2 ]
Yang, Guomin [3 ]
机构
[1] HP Labs, Bristol, Avon, England
[2] Nanyang Technol Univ, Singapore, Singapore
[3] Univ Wollongong, Wollongong, NSW, Australia
关键词
Password-based protocol; key exchange; cross-domain; client-to-client; SECURE; CRYPTANALYSIS; PROTOCOL; CLIENTS;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We revisit the problem of cross-domain secure communication between two users belonging to different security domains within an open and distributed environment. Existing approaches presuppose that either the users are in possession of public key certificates issued by a trusted certificate authority (CA), or the associated domain authentication servers share a long-term secret key. In this paper, we propose a four-party password-based authenticated key exchange (4PAKE) protocol that takes a different approach from previous work. The users are not required to have public key certificates, but they simply reuse their login passwords they share with their respective domain authentication servers. On the other hand, the authentication servers, assumed to be part of a standard PKI, act as ephemeral CAs that "certify" some key materials that the users can subsequently exchange and agree on a session key. Moreover, we adopt a compositional approach. That is, by treating any secure two-party password-based key exchange protocol and two-party asymmetric-key based key exchange protocol as black boxes, we combine them to obtain a generic and provably secure 4PAKE protocol.
引用
收藏
页码:1052 / 1060
页数:9
相关论文
共 50 条
  • [1] Cross-Domain Password-Based Authenticated Key Exchange Revisited
    Chen, Liqun
    Lim, Hoon Wei
    Yang, Guomin
    ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2014, 16 (04)
  • [2] Scalable protocol for cross-domain group password-based authenticated key exchange
    Cong Guo
    Zijian Zhang
    Liehuang Zhu
    Yu-an Tan
    Zhen Yang
    Frontiers of Computer Science, 2015, 9 : 157 - 169
  • [3] Scalable protocol for cross-domain group password-based authenticated key exchange
    Cong GUO
    Zijian ZHANG
    Liehuang ZHU
    Yu-an TAN
    Zhen YANG
    Frontiers of Computer Science, 2015, 9 (01) : 157 - 169
  • [4] Scalable protocol for cross-domain group password-based authenticated key exchange
    Guo, Cong
    Zhang, Zijian
    Zhu, Liehuang
    Tan, Yu-an
    Yang, Zhen
    FRONTIERS OF COMPUTER SCIENCE, 2015, 9 (01) : 157 - 169
  • [5] A Novel Contributory Cross-domain Group Password-based Authenticated Key Exchange Protocol with Adaptive Security
    Zhu, Liehuang
    Guo, Cong
    Zhang, Zijian
    Fu, Wei
    Xu, Rixin
    2017 IEEE SECOND INTERNATIONAL CONFERENCE ON DATA SCIENCE IN CYBERSPACE (DSC), 2017, : 213 - 222
  • [6] Password-Based Authenticated Key Exchange
    Pointcheval, David
    PUBLIC KEY CRYPTOGRAPHY - PKC 2012, 2012, 7293 : 390 - 397
  • [7] Password-Based Authenticated Key Exchange: An Overview
    Abdalla, Michel
    PROVABLE SECURITY, PROVSEC 2014, 2014, 8782 : 1 - 9
  • [8] A framework for password-based authenticated key exchange
    Gennaro, Rosario
    Lindell, Yehuda
    ACM Transactions on Information and System Security, 2006, 9 (02) : 181 - 234
  • [9] A framework for password-based authenticated key exchange
    Gennaro, R
    Lindell, Y
    ADVANCES IN CRYPTOLOGY-EUROCRYPT 2003, 2003, 2656 : 524 - 543
  • [10] Anonymous password-based authenticated key exchange
    Viet, DQ
    Yamamura, A
    Tanaka, H
    PROGRESS IN CRYPTOLOGY - INDOCRYPT 2005, PROCEEDINGS, 2005, 3797 : 244 - 257