Cross-Domain Password-Based Authenticated Key Exchange Revisited

被引:0
|
作者
Chen, Liqun [1 ]
Lim, Hoon Wei [2 ]
Yang, Guomin [3 ]
机构
[1] HP Labs, Bristol, Avon, England
[2] Nanyang Technol Univ, Singapore, Singapore
[3] Univ Wollongong, Wollongong, NSW, Australia
关键词
Password-based protocol; key exchange; cross-domain; client-to-client; SECURE; CRYPTANALYSIS; PROTOCOL; CLIENTS;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We revisit the problem of cross-domain secure communication between two users belonging to different security domains within an open and distributed environment. Existing approaches presuppose that either the users are in possession of public key certificates issued by a trusted certificate authority (CA), or the associated domain authentication servers share a long-term secret key. In this paper, we propose a four-party password-based authenticated key exchange (4PAKE) protocol that takes a different approach from previous work. The users are not required to have public key certificates, but they simply reuse their login passwords they share with their respective domain authentication servers. On the other hand, the authentication servers, assumed to be part of a standard PKI, act as ephemeral CAs that "certify" some key materials that the users can subsequently exchange and agree on a session key. Moreover, we adopt a compositional approach. That is, by treating any secure two-party password-based key exchange protocol and two-party asymmetric-key based key exchange protocol as black boxes, we combine them to obtain a generic and provably secure 4PAKE protocol.
引用
收藏
页码:1052 / 1060
页数:9
相关论文
共 50 条
  • [21] Simple and Efficient Password-Based Authenticated Key Exchange Protocol
    王立斌
    潘嘉昕
    马昌社
    JournalofShanghaiJiaotongUniversity(Science), 2011, 16 (04) : 459 - 465
  • [22] A New Anonymous Password-Based Authenticated Key Exchange Protocol
    Yang, Jing
    Zhang, Zhenfeng
    PROGRESS IN CRYPTOLOGY - INDOCRYPT 2008, 2008, 5365 : 200 - 212
  • [23] Leakage-Resilient Password-Based Authenticated Key Exchange
    Ruan, Ou
    Zhang, Mingwu
    Chen, Jing
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2017, 2017, 10393 : 285 - 296
  • [24] Round-Optimal Password-Based Authenticated Key Exchange
    Katz, Jonathan
    Vaikuntanathan, Vinod
    JOURNAL OF CRYPTOLOGY, 2013, 26 (04) : 714 - 743
  • [25] Efficient password-based authenticated key exchange from lattices
    Fan, Lei
    Ding, Yi
    International Journal of Advancements in Computing Technology, 2012, 4 (22) : 321 - 328
  • [26] Efficient Hybrid Password-Based Authenticated Group Key Exchange
    Wu, Shuhua
    Zhu, Yuefei
    ADVANCES IN DATA AND WEB MANAGEMENT, PROCEEDINGS, 2009, 5446 : 562 - 567
  • [27] Simple and efficient password-based authenticated key exchange protocol
    Wang L.-B.
    Pan J.-X.
    Ma C.-S.
    Journal of Shanghai Jiaotong University (Science), 2011, 16 (4) : 459 - 465
  • [28] A New Framework for Efficient Password-Based Authenticated Key Exchange
    Groce, Adam
    Katz, Jonathan
    PROCEEDINGS OF THE 17TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'10), 2010, : 516 - 525
  • [29] Efficient and secure password-based authenticated key exchange protocol
    Wu, Shuhua
    Zhu, Yuefei
    2006 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PTS 1 AND 2, PROCEEDINGS, 2006, : 1269 - 1272
  • [30] Efficient password-based authenticated group key exchange protocol
    School of Computer Science and Engineering, University of Electronic Science and Technology of China, Chengdu 610054, China
    不详
    Dianzi Keji Diaxue Xuebao, 2009, 3 (393-396+414):