A communication-efficient three-party password authenticated key exchange protocol

被引:65
作者
Chang, Ting-Yi [2 ]
Hwang, Min-Shiang [1 ]
Yang, Wei-Pang [3 ]
机构
[1] Natl Chung Hsing Univ, Dept Management Informat Syst, Taichung 402, Taiwan
[2] Natl Changhua Univ Educ, Grad Inst E Learning, Changhua, Taiwan
[3] Natl Dong Hwa Univ, Dept Informat Management, Shoufeng, Hualien, Taiwan
关键词
Authentication; Cryptography; Key exchange; Password; Provably secure; GUESSING ATTACKS; SECURITY ENHANCEMENT; TRANSMISSION; AGREEMENT; IMPROVEMENT;
D O I
10.1016/j.ins.2010.08.032
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Three-party password authenticated key exchange (3PAKE) protocols allow two users (clients) to establish a session key through an authentication server over an insecure channel. Clients only share an easy-to-remember password with the trusted server. In the related literature, most schemes employ the server public keys to ensure the identities of both the servers and symmetric cryptosystems to encrypt the messages. This paper describes an efficient 3PAKE based on LHL-3PAKE proposed by Lee et al. Our 3PAKE requires neither the server public keys nor symmetric cryptosystems such as DES. The formal proof of security of our 3PAKE is based on the computational Diffie-Hellman assumption in the random oracle model along with a parallel version of the proposed 3PAKE. The comparisons have shown that our 3PAKE is more practical than other 3PAKEs. (C) 2010 Elsevier Inc. All rights reserved.
引用
收藏
页码:217 / 226
页数:10
相关论文
共 37 条
[1]  
[Anonymous], ACM OPERATING SYSTEM
[2]  
[Anonymous], 2010, INT J NETWORK SECURI
[3]  
[Anonymous], ADV CRYPTOLOGY CRYPT
[4]  
[Anonymous], ACM SIGOPS OPERATING
[5]  
[Anonymous], P 8 IEEE COMP SEC FD
[6]  
[Anonymous], P 27 ACM S THEOR COM
[7]  
BELLARE M, 2000, ADV CRYPTOLOGY EUROC, P122
[8]  
Bellovin S. M., 1992, Proceedings. 1992 IEEE Computer Society Symposium on Research in Security and Privacy (Cat. No.92CH3157-5), P72, DOI 10.1109/RISP.1992.213269
[9]   A novel three-party encrypted key exchange protocol [J].
Chang, CC ;
Chang, YF .
COMPUTER STANDARDS & INTERFACES, 2004, 26 (05) :471-476
[10]   Simple authenticated key agreement and protected password change protocol [J].
Chang, TY ;
Yang, WP ;
Hwang, MS .
COMPUTERS & MATHEMATICS WITH APPLICATIONS, 2005, 49 (5-6) :703-714